For IT


Make sure you are a member of the gpo_PSDisallowExempt group. At the PowerShell command line run the following command to allow PowerShell scripting execution.


set-executionpolicy -unrestricted

Note: When adding service accounts to this group submit a standard change request.  Adding vendors to this list submit a normal change request and follow rules for emergency changes if required (i.e. in some circumstances this change is pre-approved when necessary for keeping the business running). 


For Non-IT


This is by design. PowerShell has been disabled on all user OU's firmwide. Any exemptions can be done temporarily as part of an installation by adding the user to the gpo_PSDisallowExempt group and running GPUpdate /force (note: the GPO exists under the user context). Permanent exemptions must be approved by an IT manager, Director, CTO and by a senior security officer, or CISO. A business justification must be provided as to why the user needs PowerShell.