Security Policies
by Alessandro Lofaro
1.1 Definition of a security policy
1.2 Goals of a security policy
1.3 Scope of a security policy
1.4 Structure of a security policy
1.5 Policy philosophies
1.6 Main steps
1.6.1 Define responsabilities
1.6.2 Define system boundaries
1.6.3 Identify stakeholders
1.6.4 Define context
1.6.5 Establish baseline
1.6.6 Define target
1.6.7 Define path
1.6.8 Define responsabilities, part two
1.6.9 Implementation
1.6.10 go back
1.7 Remember...
1.7.1 Business ain't "chips", boys and girls...
1.7.2 Are you going to use it ?
1.7.3 Risk assessment
1.7.4 Company culture
1.7.5 People first
1.7.6 Dura lex sed lex
International legal aspects of information security
by Alessandro Lofaro
1.1 Why it is important
1.2 Two examples: privacy and computer crimes
1.3 International versus country level
1.4.1 Example: France
1.4.2 Example: United Kingdom .
1.4.3 Example: Italy .
1.4.4 Example: Belgium .
1.4.5 Example: United States
For your
assignments
you may need to learn:
How to
use the on-line library
Return to
Dr. Caftori's
Last updated 5/18/03