JancoJanco Forum

News Feed

Feed
Description

Janco Mobile Pages

Join Now

Home
Search
Templates
Salary Survey
HandiGuides
Job Descriptions
Individual Policies
Compliance Tools
White Papers
Update Service
Bundles & Special Offers
Software
Promotions

Threat vulnerability Risk Assessment

IT BusinessImpact
Sarbanes Oxley Compliance Tool Kit
Disaster Recovery Planning Template
Sensitive Information Policy

 

Security Manual Template

Security Manual Template
Sarbanes Oxley / HIPAA
ISO 27000 Compliant
Patriot Act Complaint

The Security Manual Template is typically updated every six to nine months.  If you subscribe for the update service you will automatically receive all of these updates. You can maximize your investment by subscribing to our update service.  In that way you will be kept abreast of the latest developments that are mandated.  Below is a listing of the most recent updates.

Version 6.3 - March 2008

  • Best Practices Update
  • Added section with a summary of the ISO 27000 Series standards
  • Updated the template to comply with ISO 27000  Series Standards (27001 and 27002)
  • Disaster Recovery Plan Basics Section Added
  • Wireless Security Standards Added
  • Updated Business Impact and IT Questionnaire
  • Corrected various errata

Version 6.2 - May 2007

  • Sensitive Information Policy Updated

    • Best Practices Added
    • Wireless and VPN Added
    • Payment Card Industry Data Security Standard Added
    • Added separate document PCI DSS Audit Program
  • Internet and E-mail Communication Updated

    • E-mail Forwarding Added
  • Travel, Laptop, PDA, and Off-Site Meetings Updated

    • Laptop and PDA Security Added
    • Wireless and VPN Added

Version 6.1 - March 2007

  • Added HIPAA Audit Program Guide

  • Added ISO 17799 Security Audit Checklist

Version 6.0 - January 2007

  • Added section defining ISO 17799 requirements
  • Modified entire template to be ISO 17799 compliant
  • Added Best Data Deletion and Retention Practices
  • Added Spy ware Best Practices and Removal
  • Provided two versions of the documents - WORD 2003 and WORD 2007
  • New Forms
    • Internet Use Approval Form
    • Internet Access Request Form
  • Updated forms
    • Internet Usage Policy Employee Acknowledgement (short form)
    • E-Mail Usage Policy Employee Acknowledgement (short form)

Version 5.1 - October 2006

  • New section on Internet, e-Mail, and Electronic Communication

  • New forms

    • Internet Usage Policy Employee Acknowledgement

    • E-Mail Usage Policy Employee Acknowledgement

Version 5.0 - March 2006

  • New section on Sensitive Information

  • New forms

    • Checklist For Separating Employees

    • Supervisor Checklist For Separating Employees

Version 4.1

  • New section on lost equipment

  • New section on termination process

    • Deciding whether to fire

    • Carrying out the firing decision

  • New attached excel spreadsheet with internal controls checklist for Sarbanes-Oxley section 404 compliance

Version 4.0

  • New section on travel and off-site meetings

  • Updated Inspection Check List Form

 

 

 

Site Map

Current News

26 new messages in 26 topics - digest - Knowledge of regulatory requirements, security standards and compliance issues (FFIEC guidelines, Sarbanes Oxley, GLBA, ISO 17799, CobiT v4.0, and Payment Card Industry Data Security Standard (PCI DSS)). ... - more information

Spliced feed for Security Bloggers Network - I went looking, and was surprised to see that their privacy policy is at least honest. They make no claim that they care about your privacy, nor any that they apply the highest standards of security to your information. ... - more information

Information Security Management System: Are you Still not Backing ... - The ISO-17799:2005 Code of be an enthusiast of for in rank self-confidence management recommends the following be examined during a hazard assesment: security policy, congregate of in rank security, asset management, creature capital ... - more information

[indusnmfg] About ISO - ISO/IEC 17799 Information technology: Code of practice for information security management ISO/IEC 17894 Ships and marine technology - Computer applications - General principles for development and use of PES in marine applications ... - more information

My Merchant Services Contract Requires Me To Do What?? - Their lack of Information Security standards opened their entire, international business operations to data theft. In a matter of days, hackers penetrated and stole the credit card information of millions of customers. ... - more information

Security Controls - IT Security Manager - ISO 17799, BS 7799 (National Capital Reg - Makati City) Responsibilities: Establish and implement all IT Security Controls as per the company’s security policy (ISO 17799) and coordinate with the staff; . ... - more information

15 new messages in 14 topics - digest - Perform security assessments (based on BS 17799) of external vendors and service providers. - Manage and coordinate the execution of information security and infrastructure corporate initiatives across all the business units. ... - more information

HP Creates Security Reference Model to Better Manage Enterprise ... - So, for example, the office of the Business Information Security Officers (BISO) or the Chief Security Officer (CSO) typically owns policies and proof. For the technology piece -- which has been always a struggle between the office of ... - more information

Software quality Management Expert - To Do sampling Check of Installed software, Firewall Security Policy  To check the log of SOC service randomly. 2. Role as a SQA Leader:  To Review of Product Concept Note  To Review Design / Modelling Document ... - more information

Key Regulations Affecting Identity Access Management - Data Protection Act 1998; Enterprise Act 2002; Electronic Communications Act 2000; BS7799-2:2002 (BS 7799) Information Security Management System. Also global standard ISO17799 (ISO 17799); BS10181 (BS 10181) Authentication and Access ... - more information

 

 

 

News HTML
SAFE Shopping

2008 Janco Associates, Inc. - ALL RIGHTS RESERVED -- Revised: 05/02/08