Information Security Policy Development for Compliance (inbunden)
Format
Inbunden (Hardback)
Språk
Engelska
Antal sidor
142
Utgivningsdatum
2013-03-06
Förlag
AUERBACH
Illustrationer
illustrations
Dimensioner
224 x 152 x 15 mm
Vikt
377 g
Antal komponenter
1
Komponenter
52:B&W 6.14 x 9.21in or 234 x 156mm (Royal 8vo) Case Laminate on White w/Gloss Lam
ISBN
9781466580589
Information Security Policy Development for Compliance (inbunden)

Information Security Policy Development for Compliance

ISO/IEC 27001, NIST SP 800-53, HIPAA Standard, PCI DSS V2.0, and AUP V5.0

Inbunden Engelska, 2013-03-06
759
  • Skickas inom 7-10 vardagar.
  • Gratis frakt inom Sverige över 159 kr för privatpersoner.
Finns även som
Visa alla 1 format & utgåvor
Although compliance standards can be helpful guides to writing comprehensive security policies, many of the standards state the same requirements in slightly different ways. Information Security Policy Development for Compliance: ISO/IEC 27001, NIST SP 800-53, HIPAA Standard, PCI DSS V2.0, and AUP V5.0 provides a simplified way to write policies that meet the major regulatory requirements, without having to manually look up each and every control.

Explaining how to write policy statements that address multiple compliance standards and regulatory requirements, the book will help readers elicit management opinions on information security and document the formal and informal procedures currently in place. Topics covered include:
Entity-level policies and procedures
Access-control policies and procedures
Change control and change management
System information integrity and monitoring
System services acquisition and protection
Informational asset management
Continuity of operations
The book supplies you with the tools to use the full range of compliance standards as guides for writing policies that meet the security needs of your organization. Detailing a methodology to facilitate the elicitation process, it asks pointed questions to help you obtain the information needed to write relevant policies. More importantly, this methodology can help you identify the weaknesses and vulnerabilities that exist in your organization.

A valuable resource for policy writers who must meet multiple compliance standards, this guidebook is also available in eBook format. The eBook version includes hyperlinks beside each statement that explain what the various standards say about each topic and provide time-saving guidance in determining what your policy should include.
Visa hela texten

Passar bra ihop

  1. Information Security Policy Development for Compliance
  2. +
  3. Paperless Private Practice for Lactation Consultants

De som köpt den här boken har ofta också köpt Paperless Private Practice for Lactation Consul... av Annie Frisbie Ibclc Ma (häftad).

Köp båda 2 för 1478 kr

Kundrecensioner

Har du läst boken? Sätt ditt betyg »

Innehållsförteckning

Entity-Level Policies and Procedures Access-Control Policies and Procedures Change Control and Change Management System Information Integrity and Monitoring System Services Acquisition and Protection Informational Asset Management Continuity of Operations Appendices: ISO / IEC 27001 (Annex A) Controls(c) ISO NIST S P 800-53 Controls HIPAA Security Rule PCI DSS V 2.0 Controls Agreed-Upon Procedures (AU Ps) V 5.0