Chapter 8. Security Policy and Procedures

OBJECTIVES

Understand the basic security concepts and use of security policy and procedures.

  • Much of what information system security deals with is avoiding security incidents and recovering fully when incidents do occur. These activities are only possible as a result of the required planning for developing and implementing a comprehensive security policy. This objective covers the areas a security policy addresses and the procedures necessary for implementation.

OUTLINE

Introduction

Policies

Standard

Guidelines

Procedures

Security Policy

Acceptable Use

Business Liability

Due Care

Privacy

Separation of Duties

Need to Know

Password Management

Password Rules

Securing Removable Media with Disposal and Destruction ...

Get Security+ Training Guide now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.