It is important to know, that the aim or policy and procedure writing is not to
reproduce pages and pages of documentation which are theoretically correct, and
do not have a value in terms of the day to day management of IT security
infrastructure.
ParkinsonHowe will draw from a wealth of ‘Best of Breed’ Policies
and ISO27001 and ISO20000 certification standards written for:
- IT Service Management Departments
- IT
Operations Departments
- Information Security Departments
The aim of our consultancy is to produce a set of punchy, to the point
documents drawn from many sources that can be referenced,
applied and updated in line with the evolution of the your organisation and
departments.
Policy Levels Corporate Policies written in a
consistent approach, they will be used for best practice, governance or
statutory control purposes.
Business Policies written to meet your businesses
specific requirements, for the day-to-day operation of your business.
General
Advice on Business Continuity and Information Security
areas that should be covered in each policy; procedure or work instruction.
As
well as advise we can cross reference against your industries best security
practices. Examples of policies and procedures:
- Business Continuity Backup / archive
- Crisis Management and
Disaster recovery plans
- Viruses Protection against software viruses
- Dealing
with virus infections
- General guidelines for
electronic communication
- Replying to communications
- Sending communications
- Specific issues for communicating with external parties
- Remote IT service management
- Firewall administration
- Firewall back up Documentation
- Firewall incident
handling.
|