the most trusted source for computer security training, certification and research


Security Policies in a Global Organization

Click Here
Abstract
In global organizations, some unique challenges can arise in creating and maintaining effective Information Security Policies, such as policy differences arising through merger or acquisition, varying risk tolerance levels among business units, legal and cultural differences. Some organizations may require region-specific policies that may be more restrictive than global policies, but cannot invalidate the global policies. This paper addresses the concept of creating a tiered structure Information Security Policy and a tiered approval structure, whereby some policies apply globally throughout the organization, and other policies apply to specific geographical, or regional entities.
<<Reading Room Home     <<Back to Category

Contact us: (301) 654-SANS(7267)
Monday - Friday 9am-8pm EST/EDT