Transcription of Information Security Handbook
{{id}} {{{paragraph}}}
I The Port Authority of New York and New Jersey Information Security Handbook October 15, 2008, revised as of April 2, 2018 Copyright 2008, 2013, 2018 The Port Authority of New York and New Jersey No copyright is claimed in the text of regulations or statutes quoted within. ii TABLE OF CONTENTS Page INTRODUCTION.. 1 CHAPTER 1 PORT AUTHORITY Information Security ORGANIZATIONAL 2 CHAPTER 2 CATEGORIZATION OF Information .. 4 DEFINITIONS .. 4 GENERAL PROCESS FOR CATEGORIZATION .. 6 TRAINING AND Information REVIEW.. 7 REMOVAL OF CATEGORY DESIGNATION .. 7 CHAPTER 3 Information ACCESS .. 8 APPLICABILITY .. 8 GENERAL CRITERIA .. 8 Information ACCESS CONTROLS .. 9 ACCESS DISQUALIFICATION .. 10 NON-DISCLOSURE AND CONFIDENTIALITY AGREEMENTS (NDAs) .. 10 UNAUTHORIZED DISCLOSURE OF Information .. 11 ACCESS PROHIBITIONS .. 11 BACKGROUND SCREENING .. 12 AUTHORIZED PERSONNEL CLEARANCE LIST.
1 INTRODUCTION This Port Authority of N.Y. & N.J. Information Security Handbook (“Handbook”) establishes guidelines and uniform processes and procedures for the identification, handling, receipt, tracking, care, storage and destruction of Protected Information (as hereinafter defined) pursuant to The
Domain:
Source:
Link to this page:
Please notify us if you found a problem with this document:
{{id}} {{{paragraph}}}
SECURITY CATEGORIZATION AND CONTROL, Security, Security Categorization and Control Selection for, Security control, Control, Information Security – Access Control Procedure, System Security Plan (SSP) Categorization:, System Security Plan (SSP) Categorization: Moderate, Categorization, Risk Management Framework RMF