?
Solved

Security Policy

Posted on 2011-09-13
8
Medium Priority
?
715 Views
Last Modified: 2012-05-12
is there any good material which can help to write an Organization's IT Related (ISO 27001) policies like Security Policy, Internet usage policy, media access policy etc.

1) is there any ready to go templates
2) have any body shared ISO 27001 related SAMPLE policies on internet.
0
Comment
Question by:osloboy
  • 3
  • 2
6 Comments
 
LVL 7

Expert Comment

by:mrhamen
ID: 36532187
Here is a start for different types of policies

http://www.dmoz.org/Computers/Security/Policy/Sample_Policies/
0
 

Author Comment

by:osloboy
ID: 36535771
thanks, what about professional  stuff
0
 
LVL 7

Expert Comment

by:mrhamen
ID: 36536297
what do you mean by professional stuff?
0
SMB Security Just Got a Layer Stronger

WatchGuard acquires Percipient Networks to extend protection to the DNS layer, further increasing the value of Total Security Suite.  Learn more about what this means for you and how you can improve your security with WatchGuard today!

 

Author Comment

by:osloboy
ID: 36537765
out of box, ready to go. like what you say about www.iso27001security.com
0
 
LVL 66

Accepted Solution

by:
btan earned 2000 total points
ID: 36561257
As you clearly pointed out the link, you can find couple of template link for policy write up @ http://www.iso27001security.com/html/links.html

E.g The State of California Information Security Office released an Information Security Program Guide for State Agencies - in effect a guideline on implementing ISO/IEC 27002 for US government entities @ http://www.cio.ca.gov/OIS/Government/documents/pdf/Info_Sec_Program_Guide.pdf

You can find out more samples from their official site (look at "Information Security Policy Templates", "Acceptable Use") @ http://www.cio.ca.gov/OIS/Government/library/samples.asp

btw, it is very close to NIST SP800-53. If you are interested, below is a link that shared template on mapping both @ http://www.sas70checklists.com/isoiec-27001-nist-sp-800-53-control-mapping-templates

0
 

Author Closing Comment

by:osloboy
ID: 36579538
good
0

Featured Post

Managing Security & Risk at the Speed of Business

Gartner Research VP, Neil McDonald & AlgoSec CTO, Prof. Avishai Wool, discuss the business-driven approach to automated security policy management, its benefits and how to align security policy management with business processes to address today's security challenges.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

As the cloud has become an integral part of enterprises’ workflow worldwide, there is an increasing demand for cloud managed service providers that can bring the expertise to the process and help enterprises maximize their investment in the cloud.
By definition, working capital is the measure a company’s efficiency and its financial health from a short-term perspective. With the implementation of GST in India on July 1, 2017, the unorganized sector has to pay GST at various levels in order to…
Progress
Sometimes it takes a new vantage point, apart from our everyday security practices, to truly see our Active Directory (AD) vulnerabilities. We get used to implementing the same techniques and checking the same areas for a breach. This pattern can re…
Suggested Courses

588 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question