Introduction to security  Information security standards

Chapter 12: Introduction to Security

What is “information security?”

It is important for your organization to determine what “information security” means to the organization. This is not a one-size-fits-all concept. One organization’s acceptable level of security could be another organization’s worst nightmare. Although everybody has different definitions, these are guidelines for considering security

You should identify where your organization’s security requirements originate from. That is, what is it that your organization wants to protect and what does the outside world require of your organization:

Remember that these requirements can change over time. You will probably have to revisit and reassess the security requirements to make sure they still reflect your organization’s needs.

After you and your organization determines what information security means, you must set up a series of controls and policies that meet the company's security objectives. One desirable outcome of these efforts is an information security policy document that clarifies decisions made for information security.

For more information about security features in Adaptive Server, see Chapter 13, “Getting Started With Security Administration in Adaptive Server.”





Copyright © 2005. Sybase Inc. All rights reserved. Information security standards

View this book as PDF