Find Resources & Connect with members on topics that interest you.

AI - Acquire and Implement

PO - Plan and Organize

DS - Deliver and Support

Please sign in to see your topics.

You must be logged in to join this group.

Information Security Policies/Procedures

Welcome to the Information Security Policies/Procedures topic!

Collaborate, contribute, consume and create knowledge around various information security policies and procedures including BYOD, password complexity, and other topics.

ISACA members can participate by clicking on the “Join this Community” button. You must be signed into the site. Set your alerts to be notified of new discussion activity within this community. Not an ISACA member? Join now!

This Topic Has:
1053 Members
0 Online
10646 Visits

Community Leader

Knowledge Center Manager

Knowledge Center Manager

Title: Become a Topic Leader!

Badge: Energizer


NEW! Activity Badges

Badges help others understand your level of community activity and your reputation as a contributor within the Knowledge Center. Learn More.

Discussions: 49 total

Must be a Topic member to contribute
View All »
Hello All, Recently i have joined a organisation and as part of my role and responsibility, I am currently reviewing and re-writing IT policy. I am looking for "Electronic mail and document archival policy" and any help / pointers on this will be much app...
Bharat Moghe | 6/9/2016 8:10:22 AM | COMMENTS(0)
Hi Everyone - I'm about to revamp our information security policy and would like to hear ideas from the group on formats / content / structure that has worked well for them. Have you recently created or amended IS policy, standards, or guidelines / pro...
Peter505 | 5/10/2016 8:59:14 AM | COMMENTS(6)
Hi everyone,I have been experiencing a nagging issue during the external audit of the IT Policies in my organisation. The Auditor (one of the big 5) has repeatedly  assessed the several IT policy documents reviewed to "NOT be in compliance with COBIT 5 fr...
lamd | 4/15/2016 6:22:02 AM | COMMENTS(3)
Hi All, I'm going to start the first step as a head of information security, my current position in the information technology operations, but I have a little knowledge in the field of security, actually I am looking for your kind advices and recommendati...
Tarek EL-Sherif | 2/18/2016 10:49:10 AM | COMMENTS(4)
I am preparing a Vulnerability assessment policy, just want to have some templates to get some points, which i might have missed, i will appreciate any help
Ziaulhaq Irfan086 | 2/4/2016 10:24:28 AM | COMMENTS(3)
Does anyone have (or can point me to) a good set of generic use cases for security incident management? I appreciate there are some obvious examples (e.g., laptop theft, privileged access mis-use, confidential data leakage, etc.) and also that a number of...
Phil Green | 1/3/2016 4:52:47 AM | COMMENTS(0)

Documents & Publications: 51 total

Must be a Topic member to contribute
View All »
Posted by ISACA 259 days ago
Posted by ISACA 401 days ago
Posted by ISACA 542 days ago

Events & Online Learning: 7 total

14 Oct 2013
ISACA International Event
Boston, MA, USA
16 Jun 2014
ISACA International Event
Seattle, WA, USA
11 Aug 2014
ISACA International Event
Seattle, WA, USA
15 Jun 2015
ISACA International Event
Ciudad de México, Mexico

Journal Articles: 28 total

Volume 5, 2015
by Seymour Bosworth, Michel E. Kabay and Eric Whyne | Reviewed by Dino Ippoliti, CISA, CISM
Many students and young professionals want to know which topics they should master in the information security field.
Volume 4, 2015
by Laura Taylor | Reviewed by Ibe Etea, CISA, CRISC, CA, CFE, CIA, CRMA
FISMA Compliance Handbook is a valuable reference guide to compliance requirements in the US.
Volume 2, 2015
One of biggest budget busters for an information security program is technology solutions that are not a good match for the organization.
Volume 2, 2015
by Mauricio Rocha Lyra, Ph.D., COBIT Foundation, CTFL, ISO 20000, ITIL, MCSO, OCUP, PMP, RUP and Jose Carlos Ferrer Simoes
The transformations experienced by organizations due to technological advances has made information, arguably, an enterprise’s most valuable asset.
Volume 6, 2014
by Jeimy J. Cano M., Ph.D, CFE
International trends reflect a paradigmatic change in current business models caused by the markets’ asymmetry and dynamics where instability is the constant and change is the norm.
Volume 5, 2014
by Ed Gelbstein, Ph.D.
There are three domains that impact information security.

Wikis: 2 total

Blog Posts: 3 total

Must be a Topic member to view blog posts
Infosec community celebrates new versions of ISO 27001:2013 and ISO 27002:2013. Worth to look at: and everyone should read the story of genesis of  ISO 270...
Posted By : Vilius | 1 comments
13 Nov 2014
Posted By : masarker | 4 comments
On March 1st,  I was invited to speak at the CampIT conference on Enterprise Risk/Security Management at Rosemont Convention Center. Before me there were two speakers. The first presenter spent an hour presenting the story from the trenches of technolog...
Posted By : appolloconsulting | 2 comments