9 ORGANISATIONAL SECURITY STEPS

If you’re not doing scans and penetration tests, then just know that someone else is. And they don’t work for you.

George Grachis, American author on security and compliance

In this chapter, we cover the security policies that organisations should take in order not only to protect their users from being attacked, but ultimately to protect the organisation itself. The chapter covers directive policies, which are aimed at informing users what they may or may not do; administrative policies, which detail how the organisation should prepare for and, if necessary, respond to cyber security incidents; communal policies including business continuity and disaster recovery; and finally, technical policies, which go into ...

Get Cyber Security now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.