Home
Welcome Page
About Us
iGuiders History
Contact Us
Why Guiders?
Watch our demo
What is a Guider?
Summary of Benefits
Get Started
Products
Overview
Summary of uses
Guiders Navigate
Guiders Decide
Guiders Explain
Pricing
Affiliates
Get Started
Sign Up
Sign In
Guider Creation Tools
Guider Editor FAQs
Guider Style Guide
Already have an account?
SIGN IN
Home
Login
Create
What are Guiders?
Tree View
Guided View
Guider Topic: Information Security
What is your interest in security?
go back
Does your customer/business partner have to comply to a regulation?
go back
Provide Feedback
What security initiative is your organization interested in?
Click here to add more information to this topic.
Feedback
Please share your thoughts.
Include your email address if you would like a response.
Thanks for your feedback.
A reply email will be sent to
shortly.
.
.
.
.
Information security standards
Ensure that there are standards and policies in place for personnel to follow relating to information security.
Narrow
.
.
.
.
.
.
.
.
Organizational security
Determine whether your security organization is independent and has direct access to senior management.
Narrow
.
.
.
.
.
.
.
.
Asset classification
Classifying data based upon how critical it is to operations.
Narrow
.
.
.
.
.
.
.
.
End user computing security
Determine that appropriate measures are implemented to control the use of workstations.
Narrow
.
.
.
.
.
.
.
.
Physical/environmental
Determining if solutions are in place aimed at deterrence, prevention, detection and apprehension of physical access violation.
Narrow
.
.
.
.
.
.
.
.
Remote/mobile computing
Ensure that there are proper controls for the dial-in environment, VPN access, and laptop usage.
Narrow
.
.
.
.
.
.
.
.
Network security
Determine whether or not there are adequate controls and barriers in place to ensure the availability and integrity of the network and related resources.
Narrow
.
.
.
.
.
.
.
.
Application development security
Determine whether or not there are adequate controls in place for: development, documentation, testing, and maintenance of applications.
Narrow
.
.
.
.
.
.
.
.
Business continuity planning (BCP)/Disaster recovery
Ability to recover and restore mission critical business operations and the resources necessary for support.
Narrow
.
.
.
.
.
.
.
.
Information security awareness
Ensure that there is an awareness program in place for Suburban Collection personnel, whether formal or informal.
Narrow
.
.
.
.
.
.
.
.
Incident response plan (IRP)
A program in place that is ready to respond to a security incident before one has occurred.
Narrow
.
.
.
.
.
.
.
.
Operating system security
New methods of securing information including certificates, SecureID cards and authentication servers need to be used, as well as operating systems need to be hardened to reduce the risk for unauthorized access to sensitive information.
Narrow
.
.
.
.
.
.
.
.
Wireless security
Securing Wireless Access Points.
Narrow
.
.
.
.
.
.
.
.
External presence security
Securing your company's internet facing systems to be sure they are not vulnerable to attack.
Narrow
.
.
.
.
.
.
.
.
Voice communication security
The objective for reviewing this area is to ensure that there are adequate controls in place for proper use of the voice communication resources.
Narrow
.
.
.
.
.
.
.
.
Governance and compliance
This area reviews the different compliance, regulations and standards that an organization is subject to. This also looks at how an organization is using a framework to satisfy these areas and apply them throughout the organization.
Narrow
.
.
.
.