preview

Information Security And Security Policies

Decent Essays

Information security policies are a key aspect of any information security department. These polices are used to provide management and employees with instructions of the companies security directives, eatables short and log term goals, assign responsibility, and define specific standards and processes for ensuring information and system security. A properly written security policy can be instrumental in ensuring security and can be used to create security centered employee behavior that is designed to help ensure information security.
“Security policies are intended to define what is expected from employees within an organization with respect to information systems. The objective is to guide or control the use of systems to reduce the risk to information assets. It also gives the staff who are dealing with information systems an acceptable use policy, explaining what is allowed and what not. Security policies of all companies are not same, but the key motive behind them is to protect assets. Security policies are tailored to the specific mission goals” (InfoSec Resources, 2016) All policies created by a company must be sure to be consistent with any laws and regulations that the organization is required to follow. If a policy conflicts with any of the laws or regulations, it can open the company up to expensive lawsuit. However, if you make sure all of your policies follow the laws and regulations, they can be instrumental in enforcing the legal requirements and

Get Access