Transcription of Cybersecurity Policy HANDBOOK
{{id}} {{{paragraph}}}
{00097301} Cybersecurity Policy H A N D B O O K Cybersecurity Policy HANDBOOK 2 Accellis Technology Group, Inc. TABLE OF CONTENTS 3 A LAYERED APPROACH TO Cybersecurity .. 4 OVERALL SECURITY PROGRAM & AWARENESS .. 5 A. WRITTEN INFORMATION SECURITY 5 B. ROLES & RESPONSIBILITIES .. 6 C. INCIDENT RESPONSE AND SECURITY EVENT PLAN .. 6 D. SECURITY AWARENESS TRAINING Policy .. 7 DATA HANDLING .. 7 A. BACKUP & RECOVERY Policy .. 8 B. DATA CLASSIFICATION & HANDLING Policy .. 8 C. DATA DISPOSAL & DATA RETENTION Policy .. 9 ACCESS TO SYSTEMS .. 9 A. ACCOUNTS MANAGEMENT Policy .. 9 B. ACCEPTABLE USE 10 C. SOFTWARE USAGE Policy .. 10 D. SYSTEMS ACCESS Policy .. 10 E. PHYSICAL SECURITY Policy .. 11 F. VENDOR COMPLIANCE Policy .. 11 MONITORING FOR INCIDENTS ..11 A. SYSTEM MANAGEMENT Policy .. 12 B. MONITORING 12 SECURING TECHNOLOGY RESOURCES ..12 A. ANTI-MALWARE Policy .. 12 B. CLEAN DESK & CLEAR SCREEN Policy .. 13 C. CLOUD SERVICES .. 13 D. EMAIL Policy .. 13 E. ENCRYPTION Policy .
The purpose of this handbook is to assist firms with one of the imperatives within the Education & Policy Enforcement layer: the creation and use of policies. As mentioned, there are five categories of policies, which we will review now: overall security program and awareness, data handling, access to systems and sites, monitoring, and securing.
Domain:
Source:
Link to this page:
Please notify us if you found a problem with this document:
{{id}} {{{paragraph}}}