Big4GuyWelcome to Big4Guy.com. Big4Guy is an online resource where I will share with you the latest news, insights, knowledge and some experiences as a Big 4 consultant. We will discuss some of the important issues which organisations are facing today in the areas of information security, security and controls in SAP R/3, Oracle Applications, J.D.Edwards, Peoplesoft and various other ERP's. You will also find information on latest complaince regulations like Sarbanes Oxley, Basel II and so on. Big4guy will also attempt to provide valuable resources for individuals interested in examinations the CISA, CISM, CISSP, PMP and various other security certifications considered essential for entry in any Big 4 accounting, auditing and consulting firms. You are invited to post your comments and viewpoints to posts here. I sincerely hope this online journal will be useful to everyone from a budding student to a professional in the accounting, auditing, management and consultancy professions.
|
Information Security Policies are high level statements documenting managements intention regarding information security. I am starting a series today, where I will be discussing various policies which are included in an high level security policy.
The Policy Statement for Discarding Old Equipment can be something like ......."Computers/Equipment owned by the enterprise should be disposed only by authorized personnel. Before disposing off sensitve equipment, authorized personnel should ensure that relevant security risks have been mitigated".
Such a policy can be very useful ehrn computer equipment is being disposed. Some important issues one must consider while drafting the policy might include, backup of old data before disposing, compromise of confidentility of old data, accidental disposal of equipment etc. Remember, policiies for data / media disposal should be organization specific. Adequate should be taken to ensure that drafted policy indeed meets the requirements of the organization.
More on Information Security >>
>> ISO OSI Layers
>> 7 Steps for Better Security
>> Parkinson's Law of Data
>> Confidentiality, Integrity & Availability
No Comments for this post yet...
| Mon | Tue | Wed | Thu | Fri | Sat | Sun |
|---|---|---|---|---|---|---|
| << < | > >> | |||||
| 1 | 2 | 3 | 4 | |||
| 5 | 6 | 7 | 8 | 9 | 10 | 11 |
| 12 | 13 | 14 | 15 | 16 | 17 | 18 |
| 19 | 20 | 21 | 22 | 23 | 24 | 25 |
| 26 | 27 | 28 | 29 | 30 | 31 | |