Member Area

Farmavita.Net - Pharmaceutical Licensing Network

Friday
Sep 03rd
Home arrow Farmavita.Net Journal arrow Management Practice
Management Practice Print E-mail
Written by Sanjay J Daharwal   
Article Index
Management Practice
Page 2
Page 3
Page 4
Page 5
Page 6
Page 7
Page 8
Page 9
Page 10
Page 11
Page 12
Page 13
Page 14
Page 15
Page 16
Page 17
The objectives outlined provide general guidance on the commonly accepted goals of information security management. ISO/IEC 17799:2005 contains best practices of control objectives and controls in the following areas of information security management:

  • security policy;
  • organization of information security;
  • asset management;
  • human resources security;
  • physical and environmental security;
  • communications and operations management;
  • access control;
  • information systems acquisition, development and maintenance;
  • information security incident management;
  • business continuity management;
  • Compliance.
Security policy: Adopting a security process that outlines an organization's expectations for security, this can then demonstrate management’s support and commitment to security.

Security organization: Having a management structure for security, including appointing security coordinators, delegating security management responsibilities and establishing a security incident response process

Business continuity management: Planning for disasters--natural and man-made--and recovering from them. Asset classification and control: Conducting a detailed assessment and inventory of an organization's information infrastructure and information assets to determine an appropriate level of security. 

Personnel security: Making security a key component of the human resources and business operations. This includes writing security expectations in job responsibilities (IT admins and end users), screening new personnel for criminal histories, using confidentiality agreements when dealing with sensitive information and having a reporting process for security incidents.

Physical and environmental security: Establishing a policy that protects the IT infrastructure, physical plant and employees. This includes controlling building access, having backup power supplies, performing routine equipment maintenance and securing off-site equipment.

“It contains 71 Pages of Security Management Goodness the main highlighting features are.”

 The control objectives and controls in ISO/IEC 17799:2005 are intended to be     implemented to meet the requirements identified by a risk assessment. ISO/IEC 17799:2005 is intended as a common basis and practical guideline for developing organizational security standards and effective security management practices, and to help build confidence in inter-organizational activities. 


 
< Prev
Advertisement
 

Featured Partners

2010_pharmaci_banner_150x150.gif
jfbals88_banner_150x150_2.gif
bals89_150x150.gif
150x150_g-2.gif 
  dbls02_150x150banner.gif
150x150.gif
evolution_2010_150x150.gif
150x150_chronic10_master.gif
150x150_riskshna10_master.gif
dbls03_150x150_anim.gif
banner150_pm2010.gif
bals91_150x150_anim.gif

Login to Farmavita.Net

membership is FREE

Follow us on:




Join our LinkedIn Group

BabelFish Translator




Click Flag for Translation

Who's Online

We have 71 guests online

Farmavita.Net RSS News


Reports

rbdl0002_innovations-in-inj.gif 

Events

bals90_150x150_anim.gif  

Reports

rbhc0264_privatehealthcare.gif 

Events

  chc197_150x150.gif

REPORTS

farmavita_research-store.gif