New Year's Resolutions
Thu, 2007-12-27 20:55
Topic(s):

Given the season, I thought a set of New Year’s information security resolutions would be in order. I’m sure you have your own items, but here is my list:

  • Review and update our information security policy.
  • Calendar a complete test of our business continuity/disaster recovery plan. Update the plan as necessary.
  • Allocate funds and time this year to get a better handle on where and how data is used and stored within the enterprise.
  • Test and confirm the company’s litigation hold procedures to ensure relevant records, both hardcopy and electronic, are properly preserved in the event of a claim or litigation.
  • On completion of the foregoing tests and updates, review and revise, as appropriate, the company’s document retention policy.
  • Update the company’s technology, e-mail, and Internet policies to clearly address the latest areas of potential risk, including employee use of non-company-provided computers to access company systems (e.g., home computers), employee use of removable media (e.g., USB fobs and other portable storage devices), employee use of Web-based e-mail accounts, and employee installation of peer-to-peer networking software. Ensure employees are aware of any changes to the policies.
  • Provide additional training to relevant employees regarding the foregoing topics.
  • Read this blog once weekly.
  • Eat better and visit the gym on a regular basis.

 Happy Holidays to you all and best wishes for a very happy, secure, and prosperous New Year.

Post a comment
The content of this field is kept private and will not be shown publicly.
  • Allowed HTML tags: <a> <em> <strong> <cite> <code> <ul> <ol> <li> <dl> <dt> <dd>
  • Lines and paragraphs break automatically.
* Denotes a required field
WEBCAST
Gartner Video: Best Practices for Web Application Security and Compliance

Cenzic Faced with the growing threat of hacker attacks, how do you protect your data and your corporate reputation while increasing revenue?

» View this Webcast

WHITE PAPER
Email Continuity: Don't Know What You've Got Till it's Gone

MessageLabs Today, more email is being sent and attachment sizes are becoming larger. This means that security, archiving, and continuity systems must be able to scale easily. Learn to manage your email better…

» View this White Paper