Information Security Policy: A set of guidelines and rules that outline an organization’s approach to information security. It is used in organizations to provide a clear and consistent framework for protecting information assets. Examples – a policy on acceptable use of company devices, a policy on data classification, and a policy on incident response.
Categories: CC D1: Security Principles | CCSP D6: Legal - Risk and Compliance | CISM D3: Information Security Program | CISSP D1: Security and Risk Management | Security+ D5: Security Program Management and Oversight | SSCP D1: Security Concepts and Practices
« Back to Glossary Index