![]() |
|
Writing Effective Information Security PoliciesManagement Guidelines Writing effective information security policy is more than just laying down a set of rules and procedures; it's a process unto itself, whose goal is to create a dynamic instrument that will protect a financial institution's most precious asset - information. Fortunately, resources exist to assist chief information security officers in formulating effective policy, such as Information Security Governance: Guidance for Boards of Directors and Executive Management, 2nd Edition, published in 2006 by the IT Governance Institute and available for free download at www.itgi.org. |
||||||||||||||||||||||||||||||