Feel free to discuss any topics relating to cybersecurity with the rest of the security community in this forum.
Cybersecurity Policy vs General IT Policy
- o_living soul
- Offline
- Senior Member
- Posts: 53
- Thank you received: 0
for my organization, we combined all into one policy for easy tracking. i heard of some companies having many SOPs, depends on ur needs.
Please Log in or Create an account to join the conversation.
- o_twentysomething
- Offline
- Senior Member
- Posts: 51
- Thank you received: 0
Mine has a dedicated cyber security policy as it covers quite a lot of details.
Please Log in or Create an account to join the conversation.
- o_merlionguy
- Offline
- Senior Member
- Posts: 70
- Thank you received: 0
well, good to have a dedicated one. u can build on it as time goes, there's so many things about cybersecurity. having one sop will help give ur mgmt a better view too.
Please Log in or Create an account to join the conversation.
- o_Kenneth Lee
- Offline
- New Member
- Posts: 15
- Thank you received: 0
One thing to note though is while having policies are good, make sure there is a plan to implement them too. Otherwise it will just be some bytes on a hard disk somewhere.
Please Log in or Create an account to join the conversation.
- o_merlionguy
- Offline
- Senior Member
- Posts: 70
- Thank you received: 0
@Kenneth Lee totally agree with you. Many a time, these policies are created just to fulfill audit or environmental needs. To really have a good plan to implement them is another story. that's why auditors always ask for evidences of implementation.
Please Log in or Create an account to join the conversation.
- o_cyberfox123
- Offline
- Senior Member
- Posts: 42
- Thank you received: 0
I think having one policy will be enough. But u need to put in all the necessary details to tackle all the security needs of ur company.
Please Log in or Create an account to join the conversation.