800-810-1885
Home > Services > Risk & Compliance > Information Security Policy

Information Security Policy

To remain competitive in today’s marketplace, companies are expanding their data networks beyond their traditional boundaries to meet the customer’s need for more resources and information. We now allow customers to interact with information on our networks. We allow partners and contractors to access shared information. We store, process and transmit sensitive information that does not belong to us. We mix business networks with personal networks, such as social media sites like Facebook and Twitter.

As a result, businesses now need to document rules for protecting information and the systems which store and process the information by writing a set of Information Security Policies.

Information security policies are usually documented in one or more sets of policy documents. Within an organization, these written policy documents provide a high-level description of the various controls the organization will use to protect information.

Written Information Security Policy documents are also a formal declaration of management’s intent to protect information, and are required for compliance with various security and privacy regulations. Organizations that require audits of their internal systems for compliance with various regulations will use Information Security Policies as the reference for the audit.

Specialty Areas
Energy & SCADA
Firewalls
FISMA / NIST
GLBA / FFIEC / Finance
HIPAA / HITECH / Healthcare
PCI
Virtualization & VMware
Web Servers
Wireless

Here is a sampling of Information Security Policies Sword & Shield can review and develop:

  • Workstation and WIndows PC policies
  • Physical access to computing equipment and facilities
  • Firewall configuration and policies
  • Router configuration and policies
  • Wireless access methods, practices, and policies
  • VPN and dial-up security policies
  • Laptop usage and network access policies
  • Web usage policies
  • E-mail usage policies
  • WAN Links
  • Server Operating Systems and user policies
  • Workstation operating systems and data policies
  • Patch management practices
  • Backup strategies and business continuance plans
  • Tape management practices
  • Virus protection management practices
  • Spyware/Malware avoidance management policies
  • Intrusion detection mechanisms and strategies
  • Password and other first or second level security policies
  • Directory access policies
  • Network authentication policies
  • Vendor access policies
  • Equipment disposal policies
  • Change management policies

Find Out More

Sword & Shield has been outsmarting cyber-criminals and improving security for enterprises around the world since 1997. Fill out our Consultation Request form or contact us by phone so we can begin securing your future.

U.S. Toll-free: 800-810-1885

International: 865-244-3500

Request a Consultation

 
State
How can we help you today?
Spam Protection Type this: captcha

Sales answers requests within 1 business day and usually within a few hours.

 

Some of our Certifications

Our Awards

  • About Sword & Shield

    Since 1997 Sword & Shield has been the trusted information security partner for 3000 clients in 50 states and 27 countries around the globe.

    Awards Certifications
  • Request Consultation

     
    State *

    Anti-spam captcha

    Sales answers requests within 1 business day and usually within hours.
  • Come See Us at LinkedInFollow Us On TwitterFriend Us On FacebookRSS News FeedOur Network Security Blog
Site Meter