<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Data Security Policies &#187; Personnel Security Policy</title>
	<atom:link href="http://www.datasecuritypolicies.com/category/security-policies/personnel-security-policy/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.datasecuritypolicies.com</link>
	<description></description>
	<lastBuildDate>Sat, 14 Jan 2012 22:22:10 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
		<item>
		<title>Personnel Security Policy</title>
		<link>http://www.datasecuritypolicies.com/personnel-security-policy/</link>
		<comments>http://www.datasecuritypolicies.com/personnel-security-policy/#comments</comments>
		<pubDate>Sat, 27 Oct 2007 23:53:27 +0000</pubDate>
		<dc:creator>Marc</dc:creator>
				<category><![CDATA[Personnel Security Policy]]></category>
		<category><![CDATA[Security Policies]]></category>
		<category><![CDATA[Data Security Policy]]></category>
		<category><![CDATA[Information Security Policy]]></category>
		<category><![CDATA[Security Policy]]></category>

		<guid isPermaLink="false">http://www.datasecuritypolicies.com/personnel-security-policy</guid>
		<description><![CDATA[I wrote a generic Personnel Security Policy which is attached below. Sections of this policy include: Requirement to Protect Corporate Assets Information Security Responsibilities in Employee Handbook &#38; Contracts Information Security Training Background Checks Bonding Conflict of Interest Non-Disclosure Agreements Security Incidents Here&#8217;s an excerpt: Include information security responsibilities in company rules and worker&#8217;s contracts. [...]]]></description>
			<content:encoded><![CDATA[<p></p><p>I wrote a generic Personnel Security Policy which is attached below.</p>
<p>Sections of this policy include:</p>
<ul>
<li>Requirement to Protect Corporate Assets</li>
<li>Information Security Responsibilities in Employee Handbook &amp; Contracts</li>
<li>Information Security Training</li>
<li>Background Checks</li>
<li>Bonding</li>
<li>Conflict of Interest</li>
<li>Non-Disclosure Agreements</li>
<li>Security Incidents</li>
</ul>
<p>Here&#8217;s an excerpt:</p>
<blockquote><p>Include information security responsibilities in company rules and worker&#8217;s contracts.</p>
<ul>
<li>Information security responsibilities to be followed by all employees must be incorporated into Organization XYZ&#8217;s employee handbook.</li>
<li>All employees must acknowledge in writing (electronic acknowledgement is acceptable) that they have read and understood Organization XYZ&#8217;s employee handbook.</li>
<li>Specific information security responsibilities must be incorporated into all contracts with contractors (including consultants or any non-employee who performs work for hire) who have access to restricted, customer or otherwise sensitive information.</li>
</ul>
</blockquote>
<p>You can download a copy of the policy here: <a href="http://www.datasecuritypolicies.com/wp-content/uploads/2007/04/generic-personnel-security-policy.pdf" title="Personnel Security Policy">Personnel Security Policy</a></p>
<p>Let me know if you have any suggestions!</p>
]]></content:encoded>
			<wfw:commentRss>http://www.datasecuritypolicies.com/personnel-security-policy/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>

