Create security policy that would benefit your organization

Assignment Help Other Subject
Reference no: EM132383741

Assignment

• Consider the organization where you work or an organization where you would like to work if you are not currently employed.

• Create a security policy that would benefit your organization

• Suggest some controls for your security policy

• Suggest an audit mechanism to determine compliance

Use the following Format for your policy: I want 2 pages of this assignment with 3 references.

Overview

You should put one or two sentences here that summarize the policy and its purpose for management. This is typically an explanation of why the policy exists. Don't be too technical.

Scope

This is where you define who or what the policy applies to, from all employees to only cashiers that handle cash in the front office. If it applies to equipment, it could be all equipment, all servers, all network connected equipment, or just company issued cell phones. Be specific.

Policy

This is where the policy is actually defined. Don't be too specific, leave that to the procedures and controls that support the policy.

For example, a password policy might state that users cannot share passwords, passwords must be complex, help desk personnel never request passwords, and passwords must rotate periodically.

The details of good password construction can be then put in a guideline document, instructions for the help desk on reseting passwords can be a procedure, and that Group Policy is used to force password changes every 60 days is a technical control.

None of that should be in the policy, but it all needs to be properly documented and communicated to the people that need it - the guidelines to all staff, the help desk procedure to help desk staff, and the technical controls to the domain admins.

If you are in doubt remember that good policy statements talk about what the policy is trying to accomplish, and are addressed to a wide audience. Procedures and controls talk about how it is to be accomplished and are addressed to the staff that must carry it out.

Compliance Measurement

Typically, this section includes the job title of the person responsible for overseeing its implementation or the department if multiple people are responsible, a reference to audit mechanisms, and the consequences for failure to abide by policy.

Definitions, Related Standards, and Policies

This section usually contains definitions of technical or ambiguous terms, cross-references to applicable regulations, and other policies that relate to this policy. Examples include union contracts, discipline policies, and implementation guidelines. In our password policy example, this where readers would be told to consult the password construction guideline document.

Exceptions

If there any circumstances that might allow temporary exception to the policy, such as during an emergency, define them here. If there is anyone with the authority to temporarily waive the policy, they should be identified by job title. This section is often omitted since many policies do not allow any exceptions.

Reference no: EM132383741

Questions Cloud

Sustainable behaviours of residents and local businesses : Describe two roles that government can play with regard to supporting the sustainable behaviours of residents and local businesses
In class we discussed the issue of boundaries : In class we discussed the issue of Boundaries (i. e. scope), Areas of significance (i. e. people, planet, profit), and Indicators of performance
List four reasons for the gap between people : List four reasons for the gap between people's stated intentions to buy green or sustainable products and their actual purchasing.
Suggest a number of ways self-regulation codes : Suggest a number of ways self-regulation codes could be improved to encourage global corporations to improve their human rights record.
Create security policy that would benefit your organization : Consider the organization where you work or an organization where you would like to work if you are not currently employed.
Explain personality theory that aligns with your perspective : Choose a personality theory that justifiably aligns with your perspective. Then, in a two- to three-page paper (not including title and reference pages).
Determining the environmental carrying capacity : What is "Environmental Carrying Capacity" and how do we know if it has been reached?
What would be the key steps you would take to help them : If you were a management consultant and you identified a client company to be at Phase 3 (Dunphy) but they were motivated to move up to Phase 4 or even Phase 5
How the procurement function can manage a network : Discuss how the procurement function can manage a network often global - of vendors and suppliers that can quickly become inoperative due to rapid shifts

Reviews

Write a Review

Other Subject Questions & Answers

  Do you agree or disagree with the content

Provide your own assessment of the article. (Did it make sense? Did you learn anything from it? Do you agree or disagree with the content?)

  Write about two artworks from the given periods

For this essay, write about two artworks from these periods: Renaissance, Baroque, Impressionist, or Post-Impressionist periods.

  Behavioral and social-cognitive theories

Analyze one of your habits. How did you develop this habit? Were there role models for this habit? Which people influenced the adoption of this habit? Why do you continue it? Has there been a time when you have attempted to break this habit?

  Rebuilding relationships

Rebuilding relationships with people who knew you in an earlier period of life is a common experience for those who are undergoing which of the following?

  Acts of terrorism

Acts of terrorism are intended to have an impact far beyond the death and destruction of the immediate attack. Mass fear and interruptions to normal daily functioning occur in the aftermath of terrorist attacks, like concentric surges that erupt w..

  Compare graphical analysis with quantitative analysis

Compare graphical analysis with quantitative analysis, also discuss why graphical analysis is important in research.

  Discuss the use of narcotic and sleep medication

Discuss the use of narcotic/opioid/barbiturate/sleep medication in the United States, including the change in patterns over the past 15 years.

  Discuss at least one of the employer contacts that you made

Discuss at least one of the employer contacts that you made at the career fair. Discuss any UNCP experiences or courses that helped you to prepare for the career fair. What would you do differently to prepare for a career fair in the future?

  Read the articles about two famous thinkers

Select and read the articles about two famous thinkers. Find additional articles in the University Library or on the Internet.

  What are some specific rhetorical methods

What are some specific rhetorical methods or formulas you can implement to make it persuasive? Is all writing persuasive?

  What variables about news-gathering are beyond the control

What variables about news-gathering are beyond the control of reporters and editors but nonetheless affect what people read, hear and see?

  The milgram obedience experiments had ethical problems

The Milgram obedience experiments had ethical problems because

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd