|
The policies and procedures your company adopts reflect your security
goals and objectives, defining incident and intrusion, and prosecution
of offenders, if that action is desired. A documented policy is
crucial to security.
After auditing networks, assessing risks, developing DRP's, and
recommending changes to structures, software, practices, and equipment,
ESTec writes security policies based on general principles and standard
practices kept up-to-date with changes in technology.
Policy Analyst, our new software, does this AUTOMATICALLY. No other
program has ever been capable of this step.
Global Information Security Standards
A global information security policy provides
a recognized standard upon which to base information security policy.
Among major international standards for business security are:
US DOD Orange Book
European
ITSEC principles
ISSA
- GASSP
RFC
1244 Site Security Handbook
RFC
2196 Site Security Handbook
|