Click to Play

Fear and Love of Advertising
The advertising industry is experiencing a tremendous transition. In the past, the advertisers had control over consumers, but that is not the case anymore. Now...

Top Security News

Facebook Tests Volatility Of Malware And Phishing...
Early news reports indicate that a new phishing attack is happening at Facebook right now, so be very careful what e-mails you click on. With all the attention...

Tool Developed To Hide Malware Within .NET
Most windows based modern computers come with the .NET Framework installed, so a security flaw in it...

Spammer Growth Rate Highest Ever
Spammers are stepping up their efforts as the "industry" recovers from the loss of McColo, a web hosting company whose clients generated some 75% of the...

Setting Up A Security Plan For Your Enterpirse
A plan to ensure the security of the organization's assets. Contents Organization and Administration Security Procedures Include such things as references...


05.27.09

Ensuring Your Enterprise Has Security On The Internet

By Craig Borysowich

A plan to ensure the security of the organization's internet computing assets.

Contents

Organization and Administration

· Responsibilities

An indication of how security is to be administered. It identifies the organizations and individuals responsible for maintaining, monitoring and approving the Internet Security Plan. Describes how these responsibilities fit in with other security organizations in the enterprise, and what is expected of each organization.

· Security Procedures

Include such things as references to the enterprise security policy, the procedures for each organizational area, the access procedures, emergency procedures and contacts.

Technical

· Security Goals

An overview of the level of security to be achieved and the priorities for protection.

· Security Architecture

The architecture specifies the products, tools, and techniques used within the technical architecture to provide security. This may be a reference to the Internet Architecture Blueprint.

· Security Operations

Describes the details of any procedures (e.g., systems administration for user sign-ons and passwords, provision and maintenance of encryption keys, virus protection and security alerts) required to effect the security. This part of the deliverable must be secure since it contains sensitive material.


Audit Program

· Security Audit

Describes an audit program to monitor compliance with the plan and for ongoing threat assessment. Defines the frequency of the audits, how they are to be conducted and who is to be informed of the results.

Size and Format

Indicate the individuals and organizations responsible for internet security in one to two pages and include a table to summarize. Describe the procedures in one or two pages each. Use diagrams to document the architecture and highlight any critical features in one or two paragraphs. Describe the operations as concisely as possible, five to 10 pages. Use one to two pages to describe the audit program.

Comments


About the Author:
Craig Borysowich has over 18 years of Technology Consulting experience with both public and private sector clients, including ten years in Project Leadership roles. His extensive background in working with large scale, high-profile systems integration and development projects that span throughout a customer’s organization allows him to help consulting organizations world-wide to deliver better quality projects more consistently.
About EnterpriseSecurityNews
Security news and updates for your enterprise





EnterpriseSecurityNews is brought to you by:

SecurityConfig.com NetworkingFiles.com
NetworkNewz.com WebProASP.com
DatabaseProNews.com SQLProNews.com
ITcertificationNews.com SysAdminNews.com
LinuxProNews.com WirelessProNews.com
CProgrammingTrends.com ITmanagementNews.com






-- EnterpriseSecurityNews is an iEntry, Inc. publication --
iEntry, Inc. 2549 Richmond Rd. Lexington KY, 40509
2009 iEntry, Inc. All Rights Reserved Privacy Policy  Legal

archives | advertising info | news headlines | free newsletters | comments/feedback | submit article


Enterprise Security News News Archives About Us Feedback EnterpriseSecurityNews Home Page About Article Archive News Downloads WebProWorld Forums Jayde iEntry Advertise Contact