SECURITY POLICIES, PROCEDURES, OPERATIONS & MANAGEMENT
• Information Security Policy Document
• Security Organization
- Information Security Infrastructure
- Security of 3rd Party Access
- Outsourcing
• Asset Classification and Control
- Accountability for Assets
- Information and Data Classification
• Personnel Security
- Security in Job Definitions
- User Training and Awareness
- Security Incident Response Procedures
• Business Continuity Management
PHYSICAL & ENVIRONMENTAL SECURITY
• Secure Areas
- Physical Security Perimeter
- Physical Entry Controls
- Office/Room/Facility Security
• Equipment Security
- Equipment
- Power Supplies
- Cabling
• General Environmental Controls
ACCESS & AUTHENTICATION CONTROLS
• Business Requirements for Access Control
• User Access Management
• User Responsibilities
• Network Access Control
• Operating System Access Control
• Application Access Control
• Monitoring System Access and Use
• Mobile Computing and Remote Access
| NETWORK & SYSTEMS ARCHITECTURE, CONFIGURATION & MANAGEMENT
• Security Requirements
• Network Architecture Review and Analysis
- Internet Perimeter Analysis
- Remote Access Points
- Core Internal Systems Analysis
• Network Perimeter Vulnerability Testing
- Firewall Scans
- Router Scans
- Intranet Scans
- Web Server Scans
- Modem Scans
• Internal System Vulnerability Testing
- Individual Server and Operating System Scans (Database, Application, Domain, Messaging and Core Services Servers)
ELECTRONIC EXCHANGE INFORMATION
• Electronic Commerce Security
- Authentication
- Authorization
- Security of Information in Transit
• Electronic Mail security
• Anti-Virus Protection Against Malicious Software
• Internal Usage/Content Monitoring
TECHNOLOGY OPERATIONS MANAGEMENT
• Operating Procedures Documentation Review
- Change Controls
- Incident Management: Identification/Containment/ Eradication/
Recovery/Follow-Up
• Information Backup Strategies and Procedures
• Operations Housekeeping
- Log File Review and Maintenance
- Media Handling and Security
- System Documentation
Right Click On Link To Download This
Security Assessment Document
|