|
Information Security Guidelines
An Information Security Guidelines is a suggested action or recommendation to address an area of the Information Security Policy. A security guideline is not a mandatory action, and no disciplinary action should result from non adoption. However, Information Security Guidelines are considered Best Practice and should be implemented whenever possible. A guideline typically uses works like "should" or "may" in the definition. Guidelines are usually written for a particular environment and are used to help guide users' actions. For example, "all successful logins should be logged and monitored." A guideline may apply to management, administrators, end users, or a specific group within the organisation. Information Security Guidelines will usually supplement the Procedures Manuals with their adoption encouraged and promoted rather than enforced.
|
|
|
|
This Glossary forms part of the RUsecure Security Policy Suite... visit
|
|
Use of the guidance contained within RUsecure™ is subject to the
|
|
|
See also the
|
This site created with
|