<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>DataSecurityPolicies.com &#187; Outsourcing Policy</title>
	<atom:link href="http://www.datasecuritypolicies.com/category/security-policies/outsourcing-policy/feed" rel="self" type="application/rss+xml" />
	<link>http://www.datasecuritypolicies.com</link>
	<description></description>
	<lastBuildDate>Fri, 07 Nov 2008 03:21:37 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0</generator>
		<item>
		<title>Outsourcing Policy</title>
		<link>http://www.datasecuritypolicies.com/outsourcing-policy</link>
		<comments>http://www.datasecuritypolicies.com/outsourcing-policy#comments</comments>
		<pubDate>Tue, 13 Nov 2007 21:49:56 +0000</pubDate>
		<dc:creator>Marc</dc:creator>
				<category><![CDATA[Outsourcing Policy]]></category>
		<category><![CDATA[Security Policies]]></category>
		<category><![CDATA[Data Security Policy]]></category>
		<category><![CDATA[Information Security Policy]]></category>
		<category><![CDATA[Security Policy]]></category>

		<guid isPermaLink="false">http://www.datasecuritypolicies.com/outsourcing-policy</guid>
		<description><![CDATA[I wrote a generic outsourcing policy for a presentation I&#8217;m giving on outsourcing security services. Here&#8217;s the general outline: Purpose Scope/Applicability Policy Statement Board and Management Responsibility Risk Mitigation Strategies: Outsourcing Team Business Case Due Diligence Business Continuity Management (BCM) Contractual Agreements Management and Control of the Outsourcing Relationship Offshoring Final Approval Here&#8217;s an excerpt: [...]]]></description>
			<content:encoded><![CDATA[<p>I wrote a generic outsourcing policy for a presentation I&#8217;m giving on outsourcing security services.</p>
<p>Here&#8217;s the general outline:</p>
<ul>
<li>Purpose</li>
<li>Scope/Applicability</li>
<li>Policy Statement
<ul>
<li>Board and Management Responsibility</li>
<li>Risk Mitigation Strategies: Outsourcing Team</li>
<li>Business Case</li>
<li>Due Diligence</li>
<li>Business Continuity Management (BCM)</li>
<li>Contractual Agreements</li>
<li>Management and Control of the Outsourcing Relationship</li>
<li>Offshoring</li>
<li>Final Approval</li>
</ul>
</li>
</ul>
<p>Here&#8217;s an excerpt:</p>
<blockquote><p><strong>1.0 Purpose</strong></p>
<p>The purpose of this policy is to establish the requirements for identifying, justifying, and implementing outsourcing arrangements for any Organization XYZ function.</p>
<p><strong>2.0 Scope</strong></p>
<p>This policy applies to all workforce members within Organization XYZ. It must be followed whenever Organization XYZ functions are outsourced.</p>
<p><strong>3.0 Policy</strong></p>
<p>To conduct operations as effectively and efficiently as possible, Organization XYZ may find it advantageous to outsource (use outside contractors for) certain functions. To ensure compliance with security objectives, these requirements must be followed:</p>
</blockquote>
<p>You can download a copy of the policy here: <a href="http://www.datasecuritypolicies.com/wp-content/uploads/2007/10/outsourcing-policy.pdf" title="Outsourcing Policy">Outsourcing Policy</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.datasecuritypolicies.com/outsourcing-policy/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
