Policy 7230A - Department of Administration

Policy 7230A - Department of Administration Policy 7230A - Department of Administration

10.10.2014 Views

Mandatory Non-Mandatory Procedures Baselines Procedures Baselines 6.3. Maintenance Operations 6.3.1. Plan for, and Provide Notice of, Security Operations (4 sets) (1 sets) 6.3.2. Perform Patch and Vulnerability Management (5 sets) (3 sets) 6.3.3. Securely Maintain Systems (2 sets) (2 sets) 6.4. Maintain Records 7. Systems Audit 7.1. Systems Audit 7.1.1. Configure Auditing Capabilities (4 sets) (3 sets) 7.1.2. Test Auditing Capabilities (3 sets) (2 sets) 7.1.3. Operate Auditing Capabilities (5 sets) (3 sets) 7.2. Maintain Records 8. Incident Response 8.1. Incident Response 8.1.1. Build a Team and Provide Training (4 sets) (4 sets) 8.1.2. Build an Incident Response Capability (4 sets) (5 sets) 8.1.3. Test the Plan (3 sets) (2 sets) 8.1.4. Operate the Plan (5 sets) (3 sets) 8.2. Maintain Records 9. Contingency Planning 9.1. Contingency Plans 9.1.1. Build a Plan (5 sets) (3 sets) 9.1.2. Test the Plan (3 sets) (2 sets) 9.2. Contingency Infrastructure 9.2.1. Required Contingency Infrastructure (1 set) 9.3. Contingency Operations 9.3.1. Build a Team and Provide Training (4 sets) (3 sets) 9.3.2. Backup Scheduling and Frequency (1 sets) 10. Physical Security 10.1. Physical Access Control 10.1.1. Control Physical Access (5 sets) (4 sets) 10.2. Physical Environmental Control 10.2.1. Provide Environmental Controls (5 sets) (5 sets) 10.3. Maintain Records 11. Personnel Security 11.1. Acceptable Usage 11.1.1. Establish Acceptable Usage Baselines (6 sets) (6 sets) 11.2. Personnel Operations 11.2.1. Establish Pre-Hiring Procedures (4 sets) (3 sets) 11.2.2. Hire Employees in a Structured Fashion (3 sets) (1 set) 11.2.3. Transfer Employees in a Structure Fashion (4 sets) (2 sets) 11.2.4. Terminate Employees in a Structured Fashion (3 sets) (1 set) 11.3. Maintain Records 48

Mandatory Non-Mandatory Procedures Baselines Procedures Baselines 12. Secure Purchasing/Acquisition 12.1. Secure Purchasing 12.1.1. Include Security Requirements in Solicitation Documents (4 sets) 12.1.2. Ensure Responses Include Security Requirements (4 sets) 12.2. Maintain Records 49

Mandatory<br />

Non-Mandatory<br />

Procedures Baselines Procedures Baselines<br />

12. Secure Purchasing/Acquisition <br />

12.1. Secure Purchasing<br />

12.1.1. Include Security Requirements in Solicitation Documents (4 sets)<br />

12.1.2. Ensure Responses Include Security Requirements (4 sets)<br />

12.2. Maintain Records <br />

49

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!