官术网_书友最值得收藏!

System and information integrity policy

The system and information integrity protection policy establishes rules around information system monitoring, updating, patching, scanning, and remediating. The purpose of these activities is to ensure that information system-critical IT hygiene components are functioning and well maintained.

What the system and information integrity policy should address:

  • Identifying, reporting, and correcting information and information system flaws in a timely manner
  • Providing protection from malicious code at appropriate locations within organizational information systems
  • Monitoring information system security alerts and advisories and taking appropriate actions in response
  • Updating malicious code protection mechanisms when new releases are available
  • Performing periodic scans of the information system and real-time scans of files from external sources as files are downloaded, opened, or executed
  • Monitoring the information system including inbound and outbound communications traffic, to detect attacks and indicators of potential attacks
  • Identifying unauthorized use of the information system
主站蜘蛛池模板: 从江县| 车致| 广昌县| 淳安县| 常宁市| 武功县| 辽中县| 金乡县| 潼关县| 子洲县| 嘉定区| 奉化市| 贵南县| 灌阳县| 邵武市| 成安县| 和硕县| 抚州市| 鞍山市| 柞水县| 酒泉市| 凤冈县| 徐州市| 北碚区| 洪洞县| 班戈县| 互助| 西乡县| 诸城市| 大理市| 原平市| 鄢陵县| 保德县| 依安县| 河源市| 曲麻莱县| 许昌市| 三原县| 工布江达县| 三门县| 德庆县|