In: Computer Science
Discuss the importance of having security policies in place.
Question : Discuss the importance of security policy in
Place?
"Answer : Organisations need well designed IT security polices to
ensure the success of their cyber-security strategies and efforts .
The lack of an IT security policy can result from various reasons,
but more often than not, include limited resources to assist with
developing policies, slow adoption by management, or a lack of
awareness of the importance of having an effective IT security
program in place ."
What is IT Security?
"Good IT security prevents unauthorized disclosure, disruption,
loss, access, use, or modification, of an organisation 's
information assets. Without information security, an organization
's information assets, including any intellectual property, are
susceptible to compromise or theft. It is important to keep the
principles of confidentiality, integrity, and availability in mind
when developing corporate information"
security policies .
Why is an IT Security Policy needed?
"The goal when writing an organisational information security
policy is to provide relevant direction and value to the employees
within an organisation with regard to security . The aim of IT
security policies is to address security threats and implement
strategies to mitigate IT security vulnerabilities, as well as
defining how to recover when a"
network intrusion occurs.
Main Features that It security includes
:
1 .IT security policies define what is
required of
an organisation 's
employees from a security perspective .
2 .IT security policies reflect the risk appetite of an
organisation 's management and should reflect the managerial
mindset when it comes to security .
3 .IT security policies provide direction upon which a control
framework can be built to secure the organisation against external
and internal
threats .