Policy
- 41
- IP Network Security Policy
- Example security policy to demonstrate policy writing techniques introduced in three earlier articles.
- 42
- ISO/IEC 27001 Policies
- Typical headings for a security policy aligned broadly with the ISO/IEC 27002 standard for information security management systems.
- 43
- Incident Response Policy
- From the State of Vermont Agency of Administration. Policy defining the essential elements of the process for responding to security incidents. [PDF]
- 44
- Information Security Policies
- SANS consensus research project offering around 30 editable information security policies.
- 45
- Information Security Policies
- NIST's collection of well over 100 security policies and related awareness materials, mostly from US federal agencies.
- 46
- Information Security Policies
- A suite of BS7799-related security policy and guidance documents for universities from UCISA (University Colleges and Information Systems Association) [PDF]
- 47
- Information Security Policy
- High-level information security policy statement for the Childhood Cancer Research Group at Oxford University.
- 49
- Personnel Security Policy
- Example policy covering pre-employment screening, security policy training etc. [PDF]
- 50
- Physical Security for Computer Protection Policy
- From the State of Vermont Agency of Administration. Covers physical access controls and the secure provision of power etc. to a computer room. [PDF]
- 51
- Privacy Policy
- Concise policy (just 3 paragraphs) published by the School of Graduate Studies at Norwich University.
- 52
- Standard Practice Guide
- Policy covering appropriate use of information resources and IT at the University of Michigan.
- 53
- Telecommuting/Teleworking Policy
- Sample policy on teleworking covering employment as well as information security issues.
- 54
- Third Party Connectivity Policy
- From the State of Vermont Agency of Administration. Connections require business cases, audits etc. [PDF]
- 55
- University Information Security Policies
- Electronic resource usage and security policies from the University of Pennsylvania.
- 56
- University Information Security Policies
- A set of information security policies from the University of Louisville.
- 57
- ISO 27000 Toolkit
- Commercial package containing the ISO/IEC 27001 and 27002 standards plus supporting materials such as policies and a glossary.
- 58
- ISO 27001 Certificates
- Comprehensive listing of organizations certified against ISO/IEC 27001 or equivalent national standards, based on submissions from the certification bodies.