http://www.27001-online.com/secpols.htmTypical headings for a security policy aligned broadly with the ISO/IEC 27002 standard for information security management systems.Information, background, resources covering the ISO 27001 security standard
The following represents a template for a set of policies aligned with the standard. Note that these are headings, to assist with policy creation, rather than policy statements. However, similar policy sets are in use in a substantial number of organizations.
INFORMATION SECURITY ORGANIZATIONiso 27001, iso27000, iso27001, iso 27000, bs7799Policy > Sample Policies
Generic policy for websites offering goods and services, with an important warning to seek qualified legal advice in this area.
Random site Quote:
GENERIC PRIVACY POLICY FOR
WEBSITES OFFERING GOODS OR SERVICES ONLINE
Copyright Idaho Virtual Incubator 2002
Prepared by Professor Jerry Wegman, University
privacy policy is provided for your use as a generic model only. Each website should tailor its policy for its
specific needs. Sites
waiting for hand_moderation
Ethical behavior underpins all procedural security controls. This ethics policy from Spirent is a useful model.
Random site Quote:
Spirent expects that all of its business is conducted in compliance with high ethical standards of business practice. We apply these standards to all dealings with employees, customers, suppliers and other stakeholders.
The Ethics Policy, which has been approved by the Board of Spirent
waiting for hand_moderation
SANS consensus research project offering around 30 editable information security policies.
Random site Quote:
The SANS Institute, offering computer security training for system administrators, computer security professionals, and network administrators, is a cooperative research and education organization that has many consensus projects to return computer security information to the community.
the most trusted source for computer security training, certification and research
The SANS Security Policy Project
Introduction to the SANS Security Policy Project
Welcome to the SANS Security Policy Resource page, a consensus research project of the SANS community. The ultimate goal of the