ISO IEC 17799 2000TRANSLATED INTO PLAIN ENGLISHSection 3: Security PolicyDETAILED STANDARD |
|
ISO IEC 17799 2000 is now OBSOLETE. Please see the NEW ISO IEC 27002 2013 Standard. |
3.1 ESTABLISH AN INFORMATION SECURITY POLICY |
|
|
Establish an information security policy. |
|
Make sure that your security policy provides clear direction. |
|
Make
sure that your information security policy
shows that |
|
Make
sure that your security policy
shows that your organization
is |
3.1.1 DEVELOP AN INFORMATION SECURITY POLICY DOCUMENT |
|
|
Document your information security policy. |
|
Make sure that your information security
policy document |
|
Publish your information security policy document. |
|
Communicate your security policy to all employees. |
|
Make sure that your information security
policy |
|
Make sure that your security policy
communications |
|
Make sure that your security policy document
makes it clear that |
|
Make sure that your policy document indicates
that your management |
|
Make sure that your information security
policy document describes your |
|
Make sure that your security policy document
|
|
Make sure that your policy document clarifies the scope |
|
Make sure that your information policy document defines |
|
Make sure that your security policy document highlights the
information |
|
Make sure that your information security policy document |
|
Make sure that your information security policy document |
|
Make sure that your security policy refers
to other |
3.1.2 REVIEW AND EVALUATE INFORMATION SECURITY POLICY |
|
|
Clarify who owns your information security policy. |
|
Make sure that your security policy owner is
responsible |
|
Define a security policy review and evaluation process. |
|
Carry out periodic information security policy reviews. |
|
Make sure that your periodic policy reviews
evaluate |
|
Make sure that your periodic policy reviews
evaluate the |
|
Make sure that your periodic policy reviews
evaluate |
|
Carry out a policy review whenever your security risks change. |
Praxiom Research Group Limited help@praxiom.com 780-461-4514 |
|||
Updated on March 27, 2014. First published on October 28, 2004. |
|||
Legal
Restrictions on the Use of this Page
Copyright © 2004 - 2014 by Praxiom Research Group Limited. All Rights Reserved. |