TAILIEUCHUNG - Basic Security Policy

I never cease to be amazed by the fact that you can’t take a class in Information Security without being told to do this or that in accordance with “your security policy”, but nobody ever explains what the policy is let alone how to write or evaluate it. That is why we undertook this research and education project into basic security policy. We hope you will find this module useful and that you will participate in its evolution. Consensus is a powerful tool. We need the ideas and criticisms from the information security community in order to make this The Roadmap for usable, effective policy | NiVÍM RgM1 Basic Security Policy Version - July 5 2001 I keep six honest serving men They taught me all I knew Their names are What and Why and When And How and Where and Who. --Rudyard Kipling CONTRIBUTING AUTHORS Doug Austin Alexander Bryce Rob Dinehart Brian M. Estep Robert Ishimoto Stephen Joyce Carol Kramer Randy Marchany Stephen Northcutt John Ritter Matt Scarborough Arrigo Triulzi EDITED BY Dyncorp Information Systems LLC Alexander Ltd. IBJ Whitelhall Financial Group Adelphia Business Solutions Robert Ishimoto Consulting bitLab LLC SANS Institute Virginia Tech Computing Center SANS Institute Intecs International Inc. IC Albourne Earners Ltd. Carol Kramer Stephen Northcutt Fred Kerby If you have corrections or additions or would like to be involved in enhancing this project please send email to giactc@ 2 - 1A A note from Stephen Northcutt I never cease to be amazed by the fact that you can t take a class in Information Security without being told to do this or that in accordance with your security policy but nobody ever explains what the policy is let alone how to write or evaluate it. That is why we undertook this research and education project into basic security policy. We hope you will find this module useful and that you will participate in its evolution. Consensus is a powerful tool. We need the ideas and criticisms from the information security community in order to make this The Roadmap for usable effective policy. Thank you 2 - 2A CONTENTS 1. PREFACE 2. DEFINING SECURITY POLICY 3. USING SECURITY POLICY TO MANAGE RISK 4. IDENTIFYING SECURITY POLICY 5. SECURITY POLICY WORKSHEET 6. EVALUATING SECURITY POLICY 7. ISSUE-SPECIFIC SECURITY POLICY Anti-Virus Password Assessment Backups Incident Handling Proprietary Information Personal Data Assistants 8. WRITING A PERSONAL SECURITY POLICY 9. EXERCISES APPENDIX A - Policy Templates APPENDIX B - Sample Non-Disclosure Agreement APPENDIX C - References 2 - .

TỪ KHÓA LIÊN QUAN
TAILIEUCHUNG - Chia sẻ tài liệu không giới hạn
Địa chỉ : 444 Hoang Hoa Tham, Hanoi, Viet Nam
Website : tailieuchung.com
Email : tailieuchung20@gmail.com
Tailieuchung.com là thư viện tài liệu trực tuyến, nơi chia sẽ trao đổi hàng triệu tài liệu như luận văn đồ án, sách, giáo trình, đề thi.
Chúng tôi không chịu trách nhiệm liên quan đến các vấn đề bản quyền nội dung tài liệu được thành viên tự nguyện đăng tải lên, nếu phát hiện thấy tài liệu xấu hoặc tài liệu có bản quyền xin hãy email cho chúng tôi.
Đã phát hiện trình chặn quảng cáo AdBlock
Trang web này phụ thuộc vào doanh thu từ số lần hiển thị quảng cáo để tồn tại. Vui lòng tắt trình chặn quảng cáo của bạn hoặc tạm dừng tính năng chặn quảng cáo cho trang web này.