Policy worksheets are formatted in WordŽ or ExcelŽ, developed to easily capture all required to modify the polices to fit your organizations unique requirements.

 

Sample Worksheet for Policy

word1.gif (1423 bytes)

Sample (Best Practice Policies)

Policy name: Physical Security     Revision: X1

Worksheet Section

Introduction to Policy

The organization's first line of defense against harm to its IT assets is its physical security. Care should be taken to examine all aspects of this physical security from environmental, accidental and human threats. Barriers, both physical and perceptual should be continually monitored and enhanced.

Policy Tips

Discourage users for receiving personal visitors beyond reception areas. Encourage users to challenge others that are not recognized in secure areas. Consider visitor identification that lists authorized areas be worn at all times.

Collect the following information:

Task - Information

Assigned to

Date due

Status

List of all facilities

     

Manager by facility

     

Function by facility

     

List of vulnerabilities by facilities

     

Barrier requirements by facility

     

Internal barrier requirements where applicable per facility

     

Visitor procedure per facility/area

     

Current security controls (Physical, Hardware, Software) in place in support of this policy (or needed)

Control

Owner

Date due*

Status*

       
       
       
       
       
       

* = if required, but not currently in place

This policy is associated with the following departments / job titles – functions.

Department

Job title - function

Date due*

Status*

. . . .
. . . .
. . . .
. . . .
. . . .
. . . .

* = if training is required, record results on Distribution Training Master List.xls

 

 

160_last_page.gif (1721 bytes)