Policy 7230A - Department of Administration

Policy 7230A - Department of Administration Policy 7230A - Department of Administration

10.10.2014 Views

State of Kansas Security Requirements Document State of Kansas January 11, 2010

Table of Contents Introduction ................................................................................................. 1 1 Governing Principles ............................................................................... 2 1.1 Security Policy Overview ............................................................................ 2 1.2 Roles and Responsibilities .......................................................................... 3 1.3 Policy Revision ............................................................................................ 6 2 Assessment & Security Planning ............................................................. 7 2.1 Risk and Privacy Assessment ...................................................................... 7 2.2 Security Plan ............................................................................................... 8 3 Awareness & Training ............................................................................. 9 3.1 Security Awareness Training ...................................................................... 9 3.2 Security Operations Training .................................................................... 10 4 Access Control ...................................................................................... 11 4.1 Identification & Authentication ............................................................... 11 4.2 Account Management .............................................................................. 12 4.3 Session Management ............................................................................... 13 5 Systems Configuration .......................................................................... 15 5.1 Configuration Management ..................................................................... 15 5.2 Systems Protection .................................................................................. 17 5.3 Data/Media Protection ............................................................................ 18 5.4 Application Protection ............................................................................. 20 6 Systems Operation ................................................................................ 21 6.1 Assessment Operations ............................................................................ 21 6.2 Integrity Operations ................................................................................. 21 6.3 Maintenance Operations ......................................................................... 22 7 System Audit ......................................................................................... 24 7.1 System Audit ............................................................................................ 24 8 Incident Response ................................................................................. 26 8.1 Incident Response .................................................................................... 26 9 Contingency Planning ........................................................................... 28 9.1 Contingency Plans .................................................................................... 28

State <strong>of</strong> Kansas<br />

Security Requirements Document<br />

State <strong>of</strong> Kansas<br />

January 11, 2010

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!