Is4550 Lab 4 Security Management Policy - Separation of Duties

419 Words2 Pages
Christopher Brown IS4550/Security Policies and Implementations Lab 4 ABC Credit Union Security Management Policy - Separation of Duties System Administrators: Policy Statement Employees using resources that belong to ABC Credit Union must act in compliance with the policies of this company in regards to using these resources. Purpose/Objectives The purpose of this policy is to ensure the no individual should be able to execute a high-risk transaction or conceal errors or fraud in the normal course of their duties. This policy must be in compliance with GLBA. Scope This policy applies to all employees, systems, and customers of ABC Credit Union. Standards All employees will be separated into group/departments and each department will have specific duties assigned to them. Employees: All employees will be limited to specific applications and information. No individual should be able to access information to which they do not have a legitimate access right. Systems will be in place to ensure that this is the case. They will be in charge of all customer service and will have access to customer information when needed System Administrators: will have administrative rights to install, configure and repair systems. Systems Administrators will be will also be in charge of monitoring all network activity to ensure that is no unauthorized activity. System Administrators will refer to the Workstation Configuration Standards. Database Administrators: Are responsible for database servers. They are in charge of applying patches, resolving issues and configuring appilcations on the database. Security Personal: Responsible for designing implementing, and monitoring security programs. They must understand and implement different types of controls, such as, management, operational, and technical. Also responsible for training employees on security

More about Is4550 Lab 4 Security Management Policy - Separation of Duties

Open Document