Skip to main content

Guidelines for an Information Sharing Policy

Information is often an organizations most valuable asset. As such, it is a high priority that information is secured with a high degree of confidentiality, integrity, and availability. One method of enhancing information security is through the creation of security policy. However, while policy works well at the global program level within an organization, how can it be used to fit the needs of individual the organizational units? The use of information amongst users and co-workers in these organizational units presents interesting challenges for policy which must be addressed in a unique way. This paper presents a set of guidelines which may be used in the creation of an Information Sharing Policy for small organizational units. To help facilitate these guidelines, a general overview of effective policy creation is presented. Following the step-by-step Information Sharing Policy guidelines, specific examples of the policy's use are set forth. Concluding remarks include information on increasing policy effectiveness and aware

918 (PDF, 1.71MB)

20 Mar 2003
ByChris Gilbert
Share
All papers are copyrighted

No re-posting of papers is permitted

Subscribe to GIAC’s Monthly Newsletter

Receive expert insights, priority access to certifications, essential updates on regulatory changes and industry developments.