Information Security Roles and Responsibilities Made Easy
Job Descriptions, Mission Statements, And Reporting Relationships
Publisher: Pentasafe, 2001
ISBN: 1-881585-08-5
Synopsis:
- Toggle Synopsis
-
Table of Contents:
- Toggle Table of Contents
-
- What Can This Book and CR-ROM Do For You?
- Why Do You Need To Clearly Document Roles & Responsibilities?
- Why Has Information Security Become a Team Effort?
- What Needs To Happen Before You Document Roles & Responsibilities?
- How Often Should You Update Roles & Responsibilities?
- Who Should Actually Write Roles & Responsibilities?
- What Type Of Review And Approval Process Is Necessary?
- What Resources Are Required To Document Roles & Responsibilities?
- How Long Does It Take To Document Roles & Responsibilities?
- What Specific Documents Should You Prepare?
- Information Security Department And Other Department Missions
- Information Security Staff And Other Staff Job Descriptions
- Information Security Department Reporting Relationship Diagram
- Information Security Awareness Pamphlet
- Information Security Awareness Reminder Memos
- Information Security Policy Manual
- Information Security Standards Document
- Information Security Architecture Document
- Information Security Action Plan
- Information Security Forms
- Systems Administration Procedures Manual
- Risk Acceptance Memos
- Information Systems Contingency Planning Manual
- Organizational Code Of Conduct
- Standard Operating Procedures (SOP) Manual
- Systems Development Process Manual
- Application Systems Requirement Documents
- User and Computer Operations Applications Manuals
- Records Management Policies And Procedures Manual
- Worker Performance Reviews
- Systems Usage Responsibility Agreement
- Outsourcing And Consulting Agreement
- Confidentiality And Non-Compete Agreements
- Human Resources Manual
- Physical Security Pamphlet
- What Goes Into Mission Statements For Specific Organizational Units?
- Information Security Department
- Physical (Industrial) Security Department
- Internal Audit Department
- EDP Audit Department
- Ethics And Compliance Unit
- External Auditing Firm
- Records Management Department
- Information Technology Department
- Help Desk Unit
- Network Operations Unit
- Computer Operations Unit
- Systems Administration Unit
- Database Administration Unit
- Data Administration Unit
- Insurance And Risk Management Department
- Contingency Planning Unit
- Computer Emergency Response Team
- Legal Department
- Human Resources Department
- Information Security Management Committee
- Information Technology Steering Committee
- Board of Directors -- Audit Committee
- Internal Control Committee
- Facilities Management Outsourcing Firm
- What Goes Into Job Descriptions For Specific Team Players?
- Information Security Department Manager
- Access Control System Administrator
- Internal Information Security Consultant
- Information Security Engineer
- Information Security Documentation Specialist
- Information Security Contingency Planner
- Local Information Security Coordinator
- Chief Information Officer
- Information Systems Analyst/Business Analyst
- Systems Programmer
- Business Applications Programmer
- Computer Operations Manager
- Computer Operator
- Information Systems Quality Assurance Analyst
- Help Desk Associate
- Archives Manager/Records Manager
- Telecommunications Manager
- Systems Administrator/Network Administrator
- Web Site Administrator/Commerce Site Administrator
- Database Administrator
- Data Administration Manager
- Physical Security Department Manager
- Physical Asset Protection Specialist
- Building And Facilities Guard
- Office Maintenance Worker
- Internal Audit Department Manager
- EDP Auditor
- Internal Intellectual Property Attorney
- Human Resources Department Manager
- Human Resources Consultant
- Receptionist
- Outsourcing Contract Administrator
- In-House Trainer
- Insurance And Risk Management Department Manager
- Insurance And Risk Management Analyst
- Business Contingency Planner
- Public Relations Manager
- Chief Financial Officer
- Purchasing Agent
- Chief Executive Officer
- What Reporting Relationships Should Information Security Have?
- What Factors Will Affect The Customization Of These Templates?
- Where Do The Owner, Custodian, And User Roles Fit In?
- Owners
- Custodians
- Users
- Overall Comments
- What Does A Systems Usage Responsibility Agreement Look Like?
- What Roles & Responsibilities Do Product Vendors Have?
- What Roles & Responsibilities Do Outsourcing Firms Have?
- Risks Of Outsorcing
- Typical Areas To Outsource
- Topics To Include In An Outsourcing Contract
- Due Diligence To Perform Before Outsourcing
- What Options Are Available For Smaller Organizations?
- Is A Centralized Or Decentralized Organization Structure Better?
- A Few Critical Distinctions
- Why Centralized Information Security Management Is Advisable
- Resolving A Variety Of Implementation Issues
- What Common Roles & Responsibilities Mistakes Should You Avoid?
- Statistical Study On Customary Staffing Levels
- Personality Characteristics Of An Effective Information Security Manager
- Criteria For Evaluating The Performance Of Information Security
- Relevant Professional Certifications And What They Mean
- Management Responsibility And Legal Liability
- Author's Biographical Sketch
- Selected Sources & References
- Suggestion Form Soliciting Input To The Next Edition Of This Book
- Computer Files Provided And Their Contents
- Diagram Of Roles & Responsibilities Definition Process
Reviews:
Information Security Roles and Responsibilities Made Easy
Rating: ********** (Excellent)
Do you need a job/role description for information security? It probably exists in this book.
Sekretess!