Information Security Committee (ISC)
The Information Security Committee (ISC) is the regional authority to review requests
for waiver and submit recommendations to the Regional IT Director.
The primary responsibility of the ISC in regards to the minimum standards is to
review the request and assess whether a workaround is possible so that a waiver is
not required
The ISC is not responsible for ensuring that all other processes or configurations for
systems in scope comply with the minimum standards.
The ISC meets to discuss waivers as and when required.