|
|
- To manage information security within the Company
- To maintain the security of organizational information processing facilities and information assets accessed by third parties.
- To maintain the security of information when the responsibility for information processing has been outsourced to another organization.
An information security managerial infrastructure should:
- exist
- include a management forum
- provide security coordination across organization
- formally and clearly allocate responsibilities to specific parties
- include management process for authorizing new information processing facilities
- develop sources for specialist information security advice
- encourage cooperation between organizations
- include independent reviews of information security
Third-party access to information assets and information processing equipment should:
- be controlled and allowed only within the bounds of a contractual agreement
Outsource arrangements for information processing should:
- thoroughly address security requirements within the terms of the outsourcing contract
Contact Us for a proposal!
|
Newstaff Inc.
Security Information
Security Criteria
BS 7799
Security Policy
Security Organization
Assets Control
Personnel Security
Physical Security
Computer, Network
Access Control
Development Controls
Continuity Planning
Compliance, Auditing
|