- Information Security Handbook
- Darren Death
- 117字
- 2021-07-02 21:55:58
Systems and services acquisitions policy
The purpose of the systems and services acquisition policy is to ensure that the information security program is properly inserted into the acquisitions life cycle of an organization, helping to ensure that secure and safe products are procured for the organization. Additionally, this policy ties-in the need for an effective SDLC approach, with information security being a key player.
What the system and services acquisitions policy should address:
- Allocating sufficient resources to adequately protect organizational information systems
- Employing system development life cycle processes that incorporate information security considerations
- Employing software usage and installation restrictions
- Ensuring that third-party providers employ adequate security measures to protect information, applications, and/or services outsourced from the organization
推薦閱讀
- Microsoft Dynamics CRM Customization Essentials
- 后稀缺:自動化與未來工作
- 電氣自動化專業英語(第3版)
- Getting Started with Oracle SOA B2B Integration:A Hands-On Tutorial
- 錯覺:AI 如何通過數據挖掘誤導我們
- 教父母學會上網
- 微型計算機控制技術
- Learn CloudFormation
- Python:Data Analytics and Visualization
- Salesforce for Beginners
- Excel 2010函數與公式速查手冊
- 數字多媒體技術基礎
- 手把手教你學Flash CS3
- 中國戰略性新興產業研究與發展·數控系統
- RealFlow流體制作經典實例解析