Appendix B. Sample Information Security Policy

Introduction

The objective of our Information Security Policy is to protect and respect the confidentiality, integrity, and availability (CIA) of client information, company proprietary data and employee data as well as the infrastructure that supports our services and business activities. Our Information Security Policy has been designed to meet or exceed applicable federal and state information security-related regulations contractual obligations.

The scope of the Information Security Policy extends to all functional areas and all employees, Directors, consultants, contractors, temporary staff, co-op students, interns, partners and third-party employees, and joint venture partners unless explicitly ...

Get Security Program and Policies: Principles and Practices, Second Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.