I could use some help regarding the development of a security policy for my sys admins and network staff.
My concern is that they have the highest rights of anyone, but how can I develop a policy that is clear about looking at things they shouldn’t? I am concerned that they can looking at confidential informaiton that could be used for personal gain.
Do you have a policy specific to the admin’s?