1 / 14

Types of Security Policies in Information Technology

The policies for information security must come from all corners of an organization which includes the general staff. These Security Policies are the basis for all information security planning, design and deployment.

Download Presentation

Types of Security Policies in Information Technology

An Image/Link below is provided (as is) to download presentation Download Policy: Content on the Website is provided to you AS IS for your information and personal use and may not be sold / licensed / shared on other websites without getting consent from its author. Content is provided to you AS IS for your information and personal use only. Download presentation by click this link. While downloading, if for some reason you are not able to download a presentation, the publisher may have deleted the file from their server. During download, if you can't get a presentation, the file might be deleted by the publisher.

E N D

Presentation Transcript


  1. Types of Security Policies in Information Technology www.HelpWithAssignment.com

  2. Policies for Information Security • The Policies for Information Security must come from all corners of an organization which includes the general staff. • TheseSecurity Policies are the basis for all information security planning, design and deployment. www.HelpWithAssignment.com

  3. Information Security Policies • Such Security Policies should be able to provide a direction on how the issues should be handled and what are the best technologies to be used. • These policies will direct how a particular software or equipment should work. This specific information is placed in the standards, procedures and practices. www.HelpWithAssignment.com

  4. Qualitative Security Policies • The starting and the ending point of any qualitative security programs is the policy that has been taken. • These security policies are very easy to decide on but they are very difficult to implement in a proper manner. www.HelpWithAssignment.com

  5. Types of Security Policies • Security Policies mostly depend upon the context in which they are used. • These security policies of an organization are required to protect the information assets of an organization. • Managements often propose three types of security policies. These are: www.HelpWithAssignment.com

  6. Enterprise Information Security Policies • InEnterprise Information Security Policy, a direct support is given to the organization’s mission, vision and direction. • Thissecurity policy will view and direct all the security efforts. www.HelpWithAssignment.com

  7. Enterprise Information Security Policies • The EISP on the other hand also provides a direction in the development, implementation and management of the security program. • It also sets out the requirements that must be met by the information security framework. www.HelpWithAssignment.com

  8. Issue-specific Security Policies • InIssue-specific Security Policy, the scope and applicability of the security policy is examined. • The technologies that need to be used are addressed. www.HelpWithAssignment.com

  9. Issue-specific Security Policies • Authorization of user access, privacy protection, fair and responsible use of the technology is addressed. • Often, the users are prohibited from using the information in a manner that can harm others. www.HelpWithAssignment.com

  10. System-specific Security Policies • System-specific Security Policies often include standards and procedures to be implemented while maintaining of systems. • This security policy is also used to address the implementation and configuration of technology as well as the behavior of the people. www.HelpWithAssignment.com

  11. Information Security Blueprint • After the organization develops the information security policies and standards, the information security department will develop the blueprint for the information security program. www.HelpWithAssignment.com

  12. Information Security Blueprint • The Information Security Department will list all the information assets and prioritizes the threats and dangers of the organization, a risk assessment analysis is conducted. • These assessments will help in the design of the security blueprint for the organization. www.HelpWithAssignment.com

  13. Security Program Elements • This security blueprint will act as the basis for the design, selection and implementation of all Security Program Elements. • Such Security Program Elements include policy implementation, ongoing policy management, risk management programs, education and training programs technological controls and maintenance of the security programs. www.HelpWithAssignment.com

  14. www.HelpWithAssignment.com • For further details on IT Security, visit our websites at • http://www.helpwithassignment.com/IT_Security_Assignment_Help and  • http://www.helpwiththesis.com www.HelpWithAssignment.com

More Related