A knowledge base article about Handling protected data in incidents provided by the UC Berkeley IT Service Hub - Knowledge Portal
This document outlines the business process to follow when an incident involving protected data is identified.
- Service desk agent sees incident with protected data.
- Service desk agent submits a new incident to servicenow-support@b.e requesting the original incident be deleted. This provides an audit trail.
- Service desk agent re-assigns the original incident (the one with protected data) to the 'ServiceNow Secure Records Reviewers' assignment group and ticks the ‘restricted’ checkbox on the incident that will be deleted. This will hide it from everyone.
- Service desk agent creates a new incident with the issue (and without the protected data) and assigns it to ServiceNow Platform Support. This allows the customer’s request to be worked on.
- ServiceNow Tier 1 agent receives the audit trail incident and assigns it to themself.
- ServiceNow Tier 1 agent deletes the original incident (with the protected data).
- ServiceNow Tier 1 agent resolves the audit trail incident.
If you have any questions about this process, please send email to servicenow-support@berkeley.edu