Develop an Organizaion Wide Policy Framework Implementation Plan
In:
Submitted By aimsy Words 461 Pages 2
IS4550: Security Policies and Implementation Mr. Shane Stailey
Edy Ngou
Date: 09/20/2015
Lab week 1: Organization Wide Security management AUP worksheet
ABC Credit Union
Acceptable Use Policy
Policy Statement
The acceptable Use Policy is to ensure compliance with laws such as the Gramm-Leach-Bailey Act (GLBA) and the Federation trade commission (FTC). This policy is also to assist the Credit Union ensuring information technology (IT) security best practices with regard to it associates.
Purpose / Objective
The purpose of ABC Credit Union’s acceptable use policy is to define requirements for Credit Union acceptable use policies, and define the acceptable and unacceptable uses of computer equipment, internet / intranet / extranet related systems, and email by ABC Credit Union associates in the performance of their duties. This policy requires that all Credit Union electronic information systems be used for Credit Union business with minor exceptions. These rules are in place to protect the associates and ABC Credit Union. These objectives of this policy are: * To keep the business process in a high working order in order to achieve the maximum amount of profit gained. * To keep morale law, so that employees are constantly being replaced.
Scope
This policy applies to associates, contractors, consultants, and other workers at ABC Credit Union, including all personnel affiliated with third parties. Also this policy applies to all equipment that is owned or leased by ABC Credit Union, or to devices that connect to a Credit Union network or reside at an ABC Credit Union site.
Standards
All computers system will be imaged to the following standard: * No sound * No background pictures * 800X600 screen resolution
No employees will be gained administrator right on their computer system in order to prevent any fun software from being downloaded. These standards are in place to provide the dullest work experience ever imagined and the IT department reserve the right to amend these standards at any time without notification. For the internet use policy, it will be used for business purposes and not entertainment. The company proxy server has been configure to block access to the following of website: porn hub, you porn, Facebook, Twitter, YouTube, and Netflix. The network traffic will be monitored daily and the IT department reserves the right to amend this internet use policy at any time without notification.
Procedure
This policy will be implemented by the IT staff and will be enforced by at 7’ tall.
Guidelines
Employees training programs must be established to educate and inform employees about social media usage relating to the financial institution. This includes providing specific examples of acceptable usage, policies on usage during work hours. The guidelines state that Fls are now required to develop a social media strategy defining clear roles of ownership over social media management responsibilities.