Imagine that you have some specific policies that wouldn't make sense for you to ask for contractors or part-time employees to read and accept because it's not related to their scope of work - however, you still want your full-time employees to read and accept all of the policies. In another scenario, maybe you have working students that are using their personal computers to work and don't want to install the Secfix Agent.
With those scenarios in mind, Secfix enables you to customize tasks for each of the employee groups that you end up creating in Secfix. To be able to customize the tasks, you'll first need to create employee groups - read how to do that here.
Tasks per group
Secfix Agent
We have a dedicated guide on who should install the Secfix agent.
Security Awareness Training
π‘ If you're aiming to get certified (relevant frameworks: ISO 27011, TISAX and SOC2), all your employees should complete the security awareness training. This includes your contractors or temporary staff who might have access or interact with sensitive data.
π‘ To be compliant with framework requirements organizations need to ensure the competence and awareness of all individuals whose work impacts information security.
Policies
Refer to this dedicated guide.
When should you work on employee tasks?
Employees from certain groups need to complete three or fewer types of tasks:
At this stage of the project, you probably haven't read and neither written your policies - at least that's the case for most of our customers.
There are 2 ways of rolling out the compliance tasks:
Ask employees to complete steps 1 and 2 first (e.g. now) and then ask them again to get into Secfix to sign the policies (3) at the later stages
or
Ask employees to complete steps 1, 2 and 3 at the same time after you finish writing the policies
π‘ Our take here is that the bigger the company, the higher the chances that the second option is the best one.
Notifying employees about pending tasks
The good news is that there's no need for you to spend your time notifying your employees one by one that they need to finish their tasks on Secfix. To send a bulk notification to your employees, follow these steps:
Once you notify your employees, they'll get an e-mail that explains that your company partnered up with Secfix and that they need to complete certain steps. By following the instructions, they will complete their onboarding tasks π