Description
The template is flexibly customizable and includes standard market specifications in the areas of:
- Organizational security
- Personal security
- Physical security
- Technological security
The following security measures have been added:
- Information about threats (threat intelligence)
- Information security for the use of cloud services
- ICT readiness for business continuity
- Monitoring of physical security
- Configuration management
- Deletion of information
- Masking of data
- Prevention of data loss (data leakage prevention, DLP)
- Monitoring of activities
- Web filtering
- Secure programming
All areas are introduced by a definition of the primary target group, which is responsible for implementing the requirements of this area. With this method, the information security guideline can be implemented quickly and easily in the company by involving the relevant departments.
The ISO 27001 information security policy template was developed specifically for small and medium-sized companies and deliberately avoids splitting the requirements into individual documents, such as a separate cryptography policy. All user-related requirements are not included in this template, but in the ISO 27001 user policy template package, so companies do not have to train their users on the central information security guidelines.
Language: German / English
License: Digital template in Microsoft Office format with right of use for one company. The template may be modified as desired. No resale, transfer or commercial use by consulting companies is permitted.