|
I
N
F
O
R
M
A
T
I
O
N
| |
Questions for enterprise senior
managers
• Has senior management provided written,
appropriate information, email and internet policies for all employees? Are
these audited on a regular basis?
• Is security viewed as a cost of business or
a means to expand business possibilities?
• Are legal responsibilities for your
industry being adhered to?
• Are managers and employees trained and do
they understand their security responsibilities?
How would you
answer
EACH Question?
(Print this out and take the survey!)
| I know at all times what files my
staff and programmers are viewing, modifying and deleting: |
YES |
NO |
NOT SURE |
| I know for sure that ALL
sensitive information is accessed ONLY by authorized employees.
|
YES |
NO |
NOT SURE |
| I have written security policies
and procedures in place to protect the organization: |
YES |
NO |
NOT SURE |
| I have written security standards
and guidelines in place to protect the organization: |
YES |
NO |
NOT SURE |
| Are you 100% sure that, in the event of a disaster, your organization can recover and resume normal operations
elsewhere? |
YES |
NO |
NOT SURE |
| I have had a formal, written business impact analysis done to
assist in defining critical organization's functions.
|
YES |
NO |
NOT SURE |
| Business Continuity Plans have been
developed, in place, maintained, and up to date to ensure the organization can
survive in the event of a disaster. |
YES |
NO |
NOT SURE |
| Have Business Continuity Plans have been tested?
|
YES |
NO |
NOT SURE |
| Have Disaster Recovery Plans have been tested?
|
YES |
NO |
NOT SURE |
| Have critical applications been identified?
|
YES |
NO |
NOT SURE |
| Are payroll and other sensitive OUTQ's protected from unauthorized
modification, disclosure or destruction?
|
YES |
NO |
NOT SURE |
| My employees know what is expected of them because they have been
trained in security procedures for protecting corporate information. |
YES |
NO |
NOT SURE |
IF you answered NO or NOT SURE to
any of the above, then you need the expertise and services of VGS,
Inc. Information Security to protect your vital information.
WHY use an Independent Consultant?
"Small firms do tend to be
more responsive, have less red tape, and fewer logistical problems." -- Fred
Herr, AS/400 Technology, May 1999, pp. 60-61.
| |
P
R
O
T
E
C
T
I
O
N
|