Hopefully, you will have a comprehensive and documented security policy. These are the baseline measures which must be adopted throughout your organisation.
Policies are extremely important. Most organisations carefully craft them to reflect their fundamental security needs and requirements. Unfortunately, despite such worthy attentions during creation, their impact on the ground is often disappointing.
This is a fatal flaw.... a policy not implemented might as well not exist. The bottom line is that requisite security is not being implemented.
At least as much attention should be applied to implementing policies, organisation wide, as was applied to creating them. Implementation should be PLANNED and compliance MEASURED on an ongoing basis. But how?
Clearly, identifying, planning and scheduling policy compliance measures is a significant task and is one that can sometimes be overwhelming if attempted manually from a central point. To address this, and make organisation wide compliance manageable, a radical new approach was needed.
Policy Compliance Analyst is a PC knowledge based system, using the acclaimed COBRA approach.
Essentially, using either the purpose built editing component or optional consultancy, YOUR policy can be integrated into the knowledge base of the product. Thereafter, you will have a tool which will:
Furthermore, the system is designed to be extremely simple to install and use. This is essential.... it enables copies of the compliance checker to be devolved, if required. This allows sections, departments and business units to perform self assessments - to check their own compliance and act on the specific results.
Consistency is another key issue. Such an approach ensures consistent and objective compliance measurement. It enables policy to be issued along with the actual means to measure compliance and an aid to planning and implementing the necessary changes.
The Policy Compliance Analyst system has already been adopted by a number of the worlds largest and prestigious enterprises. They have, after many years of policy stagnation, moved compliance forward very dramatically indeed. Through this route they have substantially improved the baseline security across their enterprise.
Policy implementation is fundamental to your security profile. For further information on how Policy Compliance Analyst can be of value in assisting you in achieving full organisation wide conformance, please contact C&A System Security Ltd or any authorised distributor.
Copyright © 2000 C & A Systems Security Ltd