Join Books.org — it's free

Computer Security, Databases Security
Information Security Policies, Procedures, and Standards: Guidelines for Effective Information Security Management by Thomas R. Peltier β€” book cover

Information Security Policies, Procedures, and Standards: Guidelines for Effective Information Security Management

by Thomas R. Peltier
Available on Bookshop Write a review

Books.org participates in affiliate programs including Bookshop.org and the Amazon Services LLC Associates Program. We may earn a commission from qualifying purchases made through links on this page, at no additional cost to you.

Log in to track your reading progress.

Overview

By definition, information security exists to protect your organization's valuable information resources. But too often information security efforts are viewed as thwarting business objectives. An effective information security program preserves your information assets and helps you meet business objectives. Information Security Policies, Procedures, and Standards: Guidelines for Effective Information Security Management provides the tools you need to select, develop, and apply a security program that will be seen not as a nuisance but as a means to meeting your organization's goals.

Divided into three major sections, the book covers: writing policies, writing procedures, and writing standards. Each section begins with a definition of terminology and concepts and a presentation of document structures. You can apply each section separately as needed, or you can use the entire text as a whole to form a comprehensive set of documents. The book contains checklists, sample policies, procedures, standards, guidelines, and a synopsis of British Standard 7799 and ISO 17799.

Peltier provides you with the tools you need to develop policies, procedures, and standards. He demonstrates the importance of a clear, concise, and well-written security program. His examination of recommended industry best practices illustrates how they can be customized to fit any organization's needs. Information Security Policies, Procedures, and Standards: Guidelines for Effective Information Security Management helps you create and implement information security procedures that will improve every aspect of your enterprise's activities.

Synopsis

By definition, information security exists to protect your organization's valuable information resources. But too often information security efforts are viewed as thwarting business objectives. An effective information security program preserves your information assets and helps you meet business objectives. Information Security Policies, Procedures, and Standards: Guidelines for Effective Information Security Management provides the tools you need to select, develop, and apply a security program that will be seen not as a nuisance but as a means to meeting your organization's goals.

Divided into three major sections, the book covers: writing policies, writing procedures, and writing standards. Each section begins with a definition of terminology and concepts and a presentation of document structures. You can apply each section separately as needed, or you can use the entire text as a whole to form a comprehensive set of documents. The book contains checklists, sample policies, procedures, standards, guidelines, and a synopsis of British Standard 7799 and ISO 17799.

Peltier provides you with the tools you need to develop policies, procedures, and standards. He demonstrates the importance of a clear, concise, and well-written security program. His examination of recommended industry best practices illustrates how they can be customized to fit any organization's needs. Information Security Policies, Procedures, and Standards: Guidelines for Effective Information Security Management helps you create and implement information security procedures that will improve every aspect of your enterprise's activities.

Booknews

Walks through the key structure elements of a written information protection policy, and reviews some typical policy contents. The guide illustrates how to develop the related standards, procedures, and guidelines for implementing the policy. Each chapter provides advice on the structural mechanics of the various documents as well as an example of each form. The classification of information is also covered. The appendices contain a policy baseline checklist, sample corporate policies, and sample security policies. Annotation c. Book News, Inc., Portland, OR (booknews.com)

Reviews

There are no reviews yet. Log in to write one.

Editorials


Walks through the key structure elements of a written information protection policy, and reviews some typical policy contents. The guide illustrates how to develop the related standards, procedures, and guidelines for implementing the policy. Each chapter provides advice on the structural mechanics of the various documents as well as an example of each form. The classification of information is also covered. The appendices contain a policy baseline checklist, sample corporate policies, and sample security policies. Annotation c. Book News, Inc., Portland, OR (booknews.com)

Book Details

Published
December 1, 2001
Publisher
CRC Press
Pages
312
Format
Paperback
ISBN
9780849311376

More by Thomas R. Peltier

Similar books