Sample Ongoing Security Awareness Standard:
Sample Employee Ongoing Security Awareness Standard
This Employee Ongoing Security Awareness Standard builds on the objectives established in the Security Awareness Policy, and provides specific instructions and requirements for providing ongoing security awareness education and training for Company employees.
Objectives
- General
- All Company employees should receive the appropriate Information Security awareness training on an annual basis.
- Effective combinations of the following security awareness materials and techniques should be used to promote and reinforce Company information security objectives:
- Electronic mail reminders
- Logon banners with security message of the day
- Security awareness contests
- Security Posters
- Company newsletter
- Booklets and handouts
- All Company employees should be made aware of the certain security-related issues as they occur including but not limited to:
- Virus alerts, hoaxes, and approved Company responses
- Social engineering techniques
- Security topics of interests
- Asset Owners, Asset Custodian, Information Technology personnel, and Information Security staff should receive ongoing security training that covers emerging risks to sensitive Company information assets and the latest security trends.
Document Examples
Use these samples as a guide for your policy development. Fully customizable versions are available from The Policy Machine.
-
Employee Ongoing Security Awareness Standard page one of five.
-
Employee Ongoing Security Awareness Standard page two of five.
-
Employee Ongoing Security Awareness Standard page three of five.
-
Employee Ongoing Security Awareness Standard page four of five.
-
Employee Ongoing Security Awareness Standard page five of five.