Search
Topics
  Create an account Home  ·  Topics  ·  Downloads  ·  Your Account  ·  Submit News  ·  Top 10  
Modules
· Home
· Downloads
· FAQ
· Feedback
· Forums
· Papers
· Statistics
· Surveys
· Top 10
· Topics
· Web Links
· Your Account

Who's Online
There are currently, 21 guest(s) and 0 member(s) that are online.

You are Anonymous user. You can register for free by clicking here

ISO17799 Search



Languages
Select Interface Language:


ISO 17799 Resources
There are now quite a few BS7799, ISO27001 and ISO 17799 portals on the web offering commercial tools & products. Possibly the most complete is ISO 17799 and ISO 27001 Central.

Call for Papers
We are shortly to launch a content section for papers and articles on ISO 17799 implementation, BS7799, AS4444, ISO 27001, UNE71502, and information security generally. If you have produced a paper and would like us to publish it, please contact us via the feedback form above.

ISO 27001, ISO 27002 & ISO17799 User Group: Forums

17799.Com :: View topic - 10.8.5 Business Information systems
 Forum FAQForum FAQ   SearchSearch   UsergroupsUsergroups   ProfileProfile   Log in to check your private messagesLog in to check your private messages   Log inLog in 

10.8.5 Business Information systems

 
Post new topic   Reply to topic    17799.Com Forum Index -> ISO17799 Discussion and Debate
View previous topic :: View next topic  
Author Message
heidarka
Newbie
Newbie


Joined: May 04, 2006
Posts: 1

PostPosted: Fri May 05, 2006 6:38 am    Post subject: 10.8.5 Business Information systems Reply with quote

hi,

I am sitting at my desk and having a brain melt down Smile

this control 10.8.5 - can someone give me a example of a policy that could cover this one or just help me out with it.

thanks,

Heidar
Back to top
View user's profile Visit poster's website
nanda245
Newbie
Newbie


Joined: May 12, 2006
Posts: 2

PostPosted: Fri May 12, 2006 6:37 pm    Post subject: Reply with quote

Control
Policies and procedures should be developed and implemented to protect information associated with
the interconnection of business information systems.
Implementation guidance
Consideration given to the security and business implications of interconnecting such facilities should
include:
a) known vulnerabilities in the administrative and accounting systems where information is
shared between different parts of the organization;
b) vulnerabilities of information in business communication systems, e.g. recording phone
calls or conference calls, confidentiality of calls, storage of facsimiles, opening mail,
distribution of mail;
c) policy and appropriate controls to manage information sharing;
d) excluding categories of sensitive business information and classified documents if the
system does not provide an appropriate level of protection
e) restricting access to diary information relating to selected individuals, e.g. personnel
working on sensitive projects;
f) categories of personnel, contractors or business partners allowed to use the system and the
locations from which it may be accessed
g) restricting selected facilities to specific categories of user;
h) identifying the status of users, e.g. employees of the organization or contractors in
directories for the benefit of other users;
i) retention and back-up of information held on the system
j) fallback requirements and arrangements

Office information systems are opportunities for faster dissemination and sharing of business
information using a combination of: documents, computers, mobile computing, mobile
communications, mail, voice mail, voice communications in general, multimedia, postal
services/facilities and facsimile machines.
Other Information

Hope this helps you

Nanda
Back to top
View user's profile
Display posts from previous:   
Post new topic   Reply to topic    17799.Com Forum Index -> ISO17799 Discussion and Debate All times are GMT + 10 Hours
Page 1 of 1

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum

Powered by phpBB 2.0.8 © 2001 phpBB Group
phpBB port v2.1 based on Tom Nitzschner's phpbb2.0.6 upgraded to phpBB 2.0.4 standalone was developed and tested by:
ArtificialIntel, ChatServ, mikem,
sixonetonoffun and Paul Laudanski (aka Zhen-Xjell).

Version 2.1 by Nuke Cops © 2003 http://www.nukecops.com

Forums ©

 
The ISO 17799 Implementation Forum: A BS7799 / ISO27001, ISO17799 and ISO 27000 User Group
All logos and trademarks are property of their respective owner. Comments are property of their posters. The rest © 2005 ISO17799 / ISO 27002 Forum
AKA: BS 7799, SPE 20003, SS 627799, JIS X 5080, AS/NZS 4444, ISO 27001. Other links: UKAS accreditation body. SV
Website source phpnuke.org (c) 2003, and is Free Software under GNU / GPL licence. All Rights Are Reserved.