up

2020-01-29 - Policy

There is a full-ride scholarship available. Requires a year or more working for the DoD

read: the entropy police

TL;DR: Assessments lead to Policies which can be Audited

What is auditing

Auditing vs Assessing

Assessments lead to Policies which can be Audited.

three-levels of auditing

What is a Policy

Security Control Functions

Policy vs Procedure

Policy examples

No USB sticks.

Procedure example

“The system administrator will ensure that the password are changed by blocking users offending the policy after n time expires”

read policies from RIT, from otheruniversities, ISPs, etc.

Enterprise infosec policy

issue-specific sec policy