Hands-on Halting the Hacker Classes

Developing Information Security Policies

Information security policies are a critical element of any organization and are the foundation of its security program. Seccessful security policies are built with the understanding of the organization’s culture and reflect the business’s vision and mission. Without well-written policies, organizations will discover that they have little or no recourse when a security incident occurs.

This course explores the the process of creating security policies, delving into their content and organization. It reviews standards and methodologies and evaluates example policies.

In the workshop you will get hands-on experience developing and reviewing information security policies. You’ll examine your organization’s culture to understand how to evaluate policies which will be accepted and effective in your own company’s environment.

Course Content

Business Objectives Review
Vision
Mission
Strategy
Tactics
Operations
Security Directives Development
Philosophy
Principles
Policy
Procedures
Practices
Getting Executive Involvement
Support and Budget
Use and Compliance
Enterprise Security Policy
Enterprise Risk
Human Resources
Physical Security
Security Policy Standards
ISO 17799
GASSP

Who Should Attend

Business managers, project managers, security managers and auditors. Everyone responsible for the protection of corporate resources needs to understand how policies are developed.

Those who are responsible for creating and maintaining security policies.

What You Will Learn

How to build security policies which revelct the organization’s culture.
How to evaluate security policies.
How to build business cases for security policies to get upper management ot accept and support them.

What You Will Do

Examine your organization’s business objectives.
Determine what security principles best reflect your organization.
Examine what security policies will work in your company in the light of your business objectives.

What You Will Take Home

The tools to evaluate your own policies agains your organizations needs.
An architecture for building custom security policies for the organization.
The skills to convince upper management to support and budget for security needs.
Printable Course Brochure
  About Us  |  News  |  Partners  |  Contact Us  
Website by Write in Style. © 2007 Halting the Hacker, LLC