Across
- 2. Automatic screen ___ kicks in when you walk away from your device (Mobile Device Management Policy 3.0)
- 3. Something suspicious you should report right away to reportsecurityincident@eaton.com (IT GRC Services site)
- 4. Walk a guest through restricted areas rather than letting them wander (Physical and Environmental Security Policy 3.6.3)
- 10. Guest at an Eaton site who must be authorized before entering and accompanied inside (Physical and Environmental Security Policy 3.6)
- 11. The R in GRC, and what the Cyber ___ Management Program exists to reduce (IT GRC Services site)
- 12. Classification for information only certain Eaton roles may see (IT GRC Services site, Data Classification at Eaton)
- 13. Spare copy of your data, used to get back up and running after a disaster (Business Continuity and Disaster Recovery Policy 3.10)
- 17. What you file when you genuinely cannot follow a policy (IT GRC Services site, Exception Request Process)
- 19. Outside supplier whose risk the GRC team assesses before Eaton engages them (IT GRC Services site, Vendor Risk Assessments)
- 20. Wi-Fi by another name; requires authentication and encryption at Eaton (Network Security Policy 3.15)
- 22. Document that says what Eaton is required to do, while a Standard gives the settings (IT GRC Services site)
- 25. General name for viruses and other harmful software (Endpoint Security Policy 3.4.5)
- 26. Sending old laptops and drives to IT rather than the trash (Asset Management Policy 3.7)
- 27. What to do with paper holding sensitive information instead of tossing it in the bin (Data Classification and Handling Policy, Handling Requirements)
- 28. Software update that fixes a known security hole (IT GRC Services site, Metrics and Reporting)
- 29. Security awareness ___ is required before anyone is granted privileged access (Identification and Authentication Policy 3.21)
Down
- 1. Phones and tablets, covered by their own management policy (Mobile Device Management Policy 1.0)
- 5. ___ media, such as USB drives, has its own security requirements (Data Classification and Handling Policy 3.10)
- 6. Scrambling data so only the right people can read it; required for Confidential information (Data Classification and Handling Policy, Handling Requirements)
- 7. Visitor Wi-Fi networks are kept separate from Eaton's internal network (Network Security Policy 3.2.2)
- 8. Visitors get one that expires and must be handed back before they leave (Physical and Environmental Security Policy 3.6)
- 9. Secret you type to log in; Eaton treats these as Highly Restricted and they may never be written down (Identification and Authentication Policy 3.18)
- 14. ___ Use is the classification for information any Eaton employee may see (IT GRC Services site, Data Classification at Eaton)
- 15. Barrier that filters traffic between the internet and internal systems (Network Security Policy 3.2)
- 16. Highly ___ is the tightest classification, shared only with specifically named people (IT GRC Services site, Data Classification at Eaton)
- 18. Classification for information anyone inside or outside Eaton may see (IT GRC Services site, Data Classification at Eaton)
- 21. Unwanted bulk email that Eaton's endpoint protections filter out (Endpoint Security Policy 3.7)
- 22. Fake email that tries to trick you into clicking or sharing information (Endpoint Security Policy 3.7)
- 23. Loss or ___ of a device must be reported immediately (Mobile Device Management Policy 3.0)
- 24. Conference room device that must be controlled so nobody can switch it on remotely (Network Security Policy 3.13)
