General discussion


Security Policy

By lacayathomas ·
In a business, are there any computer related security policies that cannot be enforced??

This conversation is currently closed to new comments.

Thread display: Collapse - | Expand +

All Comments

Collapse -

Security policy

by Info-Safety, LLC In reply to Security Policy

Those policies that are not supported by your management probably cannot be enforced.

Craig Herberg

Collapse -

Yes, the ones that upper execs keep violating and making bad examples

by Why Me Worry? In reply to Security Policy

to their subordinates. If the guys on top don't follow the rules, then why should anyone else?

Collapse -

If the policy exists

by Tig2 In reply to Security Policy

It should be enforceable.

You don't differentiate between policy and regulation. If your business is impacted by HIPPA, GLBA, SOX, etc then you must manage to the regulation. If you are simply defining security from a business perspective, then the policy should be defined as something that can be tested for enforceability.

Related Discussions

Related Forums