Policy Review
IT policies provide the framework for information security and are required for federally regulated industries. Personnel and vendor policies dictate other, equally critical, aspects of your information security system.
We spend one day on-site with the client reviewing their existing information security polices, gathering information on their ideas and thoughts regarding information security and compare that to the standards and best practices offered in the FFIEC guidance. We work with the client then to revise or enhance their policies to reflect their actual environment and yet still maintain compliance with the FFIEC guidance.
Supernal’s Policy Review Services will review and update IT policies and your handbook (or code of conduct) to include the following:
- Internet & email acceptable use
- Passwords
- Patch management
- Vendor management
- Clean desk
- Information disposal
- Incident response
- Remote access
