Physical Security Policy
While WeSalute operates as a 100% remote-first globally distributed workspace, we do have a Physical Security Policy for compliance and future operations. The Physical Security Policy describes how Team Members should permit access to and secure WeSalute office(s).
Physical Office Access
If WeSalute operates a physical office it shall be protected by access control, monitored and logged with a service such as Envoy.
Visitor Access Policy
WeSalute Team Members may invite visitors to the office for business reasons or during pre-specified times, for social reasons. WeSalute Team Members must escort and supervise their visitors at all times and are responsible for the visitors' behavior while they are in the office(s). Visitors who misbehave (e.g. engage in hate speech, cause disruption, steal property, or take pictures of confidential data) will be asked to leave.
Unauthorized Visitors
WeSalute Team Members who spot unauthorized visitors should either ask the unauthorized person to leave or refer the issue to management.
Contractors and Service Vendors
Contractors, suppliers, and service vendors, e.g. IT technicians, may enter WeSalute's office to complete their job duties. The visitors' hosts are responsible for providing contractors and vendors with appropriate identification and direction while on WeSalute's premises.
Deliveries
Anyone who delivers orders, mail, or packages for employees should remain at the building's reception or gate. Large deliveries (e.g. supplies) should be delivered to designed space (e.g. store rooms).
Home Office
All WeSalute Team Members are remote team members. Physical access to workstations is secured in the same manner that someone would secure their own home.
Securing Physical Workstations
All Team Members are required to secure their physical workstations in the following manner:
-
The confidentiality, security, and privacy of WeSalute's customers must be preserved, by ensuring that no unauthorized individuals may view, overhear, or otherwise have access to WeSalute's customer data.
-
To enforce, all WeSalute Team Members are required not to view customer support communications, emails, and data, or perform voice communications with customers in public areas.
-
All WeSalute end-user devices, such as laptops, and cell phones containing access to internal WeSalute resources, must be protected at all times and may not be left unattended.
Policy Review, Disciplinary, & Responsibility
Disciplinary Action
Team Members who violate this policy may face disciplinary consequences in proportion to their violation. WeSalute ExecutiveOps will determine how serious a Team Member's offense is and take the appropriate action:
-
For minor violations (e.g. bringing in personal visitors without authorization), Team Members may receive verbal reprimands.
-
For more serious violations, Team Members may be terminated.
Responsibility
The WeSalute Security Team is responsible for ensuring this policy is followed.
This Policy currently does not have the complete required policy footer content standard on WeSalute Policies. This may be intentional by the nature of the content.