Answer: A) I would recommend putting a stronger security protocol in place for registering new employees especially the use of biometrics. Also frequent verification of Staff by way of head count.
B). An over ride process shoud be put in place for modification done on the system. Also a rotation of schedules amongst staff is important.
C). Stronger password security should be introduced such as the combination of alphabets, numbers and symbols. This password should have no bearing with personal interests of the staff and should be prompted for change frequently.
D). Staff should be made to go on leave compulsorily to give room for others to handle same schedule. Audit specialist may come and check the accounts at interval to see if there is anything suspicious. Also, a change in schedules or posting of Staff should be encouraged to prevent Staff from being too comfortable with a schedule and use it for his personal interest.
E). Internet sites not relevant to the job should be disabled. Also constant update of anti virus should be done by the IT department.
F). The company should have a policy confidentiality and that any staff who violates it with be sanctioned legally. Also medical results should be given to the patient enveloped and the content between him and the doctor.
Explanation: Company policies and procedures refers to laid down rules set by an organisation on how it's activities will be run.