Expert Advice Community

Guest

Acceptable use policy

  Quote
Guest
Guest user Created:   Apr 29, 2020 Last commented:   Apr 29, 2020

Acceptable use policy

I have a quick question, the acceptable use policy.

1. When it is ready, can it also be used as information security policy? As a more detailed version?

2. And secondly, is it necessary that employees sign the acceptable use policy? Or is it good enough to communicate the policy within the organization?

0 0

Assign topic to the user

ISO 27001 IT SECURITY POLICY

Define the detailed security rules for everyone in the company.

ISO 27001 IT SECURITY POLICY

Define the detailed security rules for everyone in the company.

Expert
Rhand Leal Apr 29, 2020

1. When it is ready, can it also be used as information security policy? As a more detailed version?

Please note that the Information security policy and the Acceptable use policy templates cover different requirements of the standard, so you cannot use the Acceptable use policy as an Information security policy.  You can see the difference between them by comparing section 2 of each template. You can see this section of the Information Security Policy through our free demo at this link: https://advisera.com/27001academy/documentation/information-security-policy/

For further information, see:

2. And secondly, is it necessary that employees sign the acceptable use policy? Or is it good enough to communicate the policy within the organization?

For certification purposes, you have to show evidence that people are aware of the policy content, and signing it is one way to show this evidence. Another way is through attendance lists about training or workshop activities where this policy is presented.

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Apr 29, 2020

Apr 29, 2020

Suggested Topics