Documentation: Requirement
No documents match the current filters.
Password Management Standard Directive
ID: REQ-0300208Version: 6.0Status: EffectiveDate: 29 Sep 2025Owner: Information Security Domain LeadScope: all Roche divisions
Roche information systems store and process valuable information assets. Protection of these assets from a variety of risks and threats is the primary objective of the Roche Information Security Management Framework. The scope of this Directive is defined as described below.
Governing Documents
Veeva ID: 1327020 Roche Information Security Policy; Veeva ID: 4779514 Roche Information Security Directive
Defines Processes (3)
Defines Roles (6)
Defines Artifacts (3)
Implements Citations (34)
- Ability to Generate Copies
- Archiving
- Authority Checks
- Biometric Safeguards
- Business Continuity
- Collusion Prevention
- Credential Maintenance
- Device (Terminal) Checks
- Device Testing
- Dual-Component Requirement: Single Session and New Session P...
- Electronic Records (Audit trail in human readable format)
- Electronic Records (Audit trail)
- Electronic Records (Data availbility in human readable forma...
- Electronic Signature
- Identity Verification
- Individual Accountability
- Legal Binding Certification
- Limiting System Access
- Loss Management
- Non-Repudiation Letter
- Ongoing Validation
- Open System Controls
- Operational Checks
- Owner Exclusivity
- Protection/Retention
- Security Monitoring
- Signature Manifestations
- Signature Uniqueness
- Signature/Record Linking
- Submissions to the Agency (Specific formats/media)
- Time-stamped Audit Trails
- Trustworthiness & Reliability
- Uniqueness of ID/Password
- Validation of Systems
References Out (2)
- FOR-0306445
- Handling Computerised System Glossary
Referenced By (1)