29 | STEVENS EMPLOYEE MANUAL Employees who travel on approved university business must comply with Stevens’ Business and Travel Expense Policy, available in the Policy Library. Stevens will reimburse individuals for policy-compliant transportation and travel related costs incurred by faculty, staff, students and others in connection with approved university activities. Employees must obtain prior written approval for all university-related travel. Only travel approved in advance will be eligible for reimbursement. Stevens expects its employees to exercise good judgment and fiscal responsibility when utilizing university funds. Travel arrangements should be planned sufficiently in advance to minimize cost and remain with budgetary limitations. Travel arrangements made for non-employees, such as guest speakers, consultants and prospective employees, must follow the same policy applicable to university employees. Please note: From time to time, including during periods of budgetary constraint or funding uncertainty, Stevens may implement a temporary freeze on travel reimbursement. During such periods, reimbursement for travel expenses may be suspended or limited, but only for travel that has not yet been booked at the time the freeze is announced.] Employees will be notified in advance of any such freeze and should confirm reimbursement eligibility before incurring travel-related costs. Employees who travel on approved university business must comply with Stevens’ Business Travel and Expense Policy, available in the Policy Library. In addition, employees must follow all applicable university policies and protocols, including those specifically addressing information security, research compliance, export controls and international travel risk. Information Security Employees must review and comply with Stevens’ Information Security Policy, available in the Policy Library which establishes institutional standards for the protection of information, secure use of technology and compliance with university reporting and security protocols. These requirements apply whether the travel is domestic or international. International Travel Employees must review and follow Stevens’ guidance on travel to Prohibited and High-Risk Cybersecurity & Privacy Countries. This applies to any international travel with Stevens-issued devices, data, systems, or sponsored research—whether for business or personal reasons. The Division of Information Technology maintains the current list of Prohibited and High-Risk Cybersecurity & Privacy Countries based on U.S. State Department, NSA, and internal assessments. Employees are required to check this list and comply with all guidance before traveling. Contact [email protected] for security guidance prior to any international travel with university-issued devices, data, or systems. Required Cybersecurity Measures Employees traveling internationally with Stevens’ devices, data or systems must: PART 7: EMPLOYEE TRAVEL 7.1 EMPLOYEE TRAVEL AND REIMBURSEMENT 7.2 TRAVEL: CYBERSECURITY AND SPONSORED RESEARCH COMPLIANCE