close

What Is Truth to Power?

dedicated to bridging the gaps between governance and practice, technology and business, regulation and control, risk management and real market pressures, and your own knowledge and the knowledge of your peers.

built to create a common pool of knowledge—one big brain—that lets you work more efficiently, build technology and business practices more effectively, and endure audits more effortlessly.

a neutral hub through which you can reach many valuable information nodes, resource collections, and organizations that are helping people like you already, but in fractured ways.

against the idea that auditors, analysts, and consultancies can control information simply through their ability to collect and distill it. T2P's goal is to unlock the vast body of knowledge, insight, and conventional wisdom that we all have, make it freely available to you, and help you digest and interpret it—without undue cost, bias, or hype.

Top Panel
WHAT IS T2P?
Top Panel
 
Computer Virus Prevention (Policy)
------- INDEX AND GLOSSARY. DO NOT CHANGE OR DELETE! ----------
-------------------------------------------------------------------------------------------------

Overview and Purpose

The number of computer security incidents and the resulting cost of business disruption and service restoration continue to escalate. Implementing solid security policies, blocking unnecessary access to networks and computers, improving user security awareness, and early detection and mitigation of security incidents are some of the actions that can be taken to reduce the risk and drive down the cost of security incidents.

The purpose of the Computer Virus Detection Policy is to describe the requirements for dealing with computer virus, worm and Trojan Horse prevention, detection and cleanup.

Coverage

The [variable: Covered Organization] Computer Virus Detection Policy applies equally to all individuals that use any [variable: Covered Organization] Information Resources.

Definitions

General Terms

Roles and Functions

Virus Detection Policy

  • All workstations whether connected to the [variable: Covered Organization] network, or standalone, must use the [variable: Covered Organization] IS approved virus protection software and configuration.
  • The virus protection software must not be disabled or bypassed.
  • The settings for the virus protection software must not be altered in a manner that will reduce the effectiveness of the software.
  • The automatic update frequency of the virus protection software must not be altered to reduce the frequency of updates.
  • Each file server attached to the [variable: Covered Organization] network must utilize [variable: Covered Organization] IS approved virus protection software and setup to detect and clean viruses that may infect file shares.
  • Each Email gateway must utilize [variable: Covered Organization] IS approved email virus protection software and must adhere to the IS rules for the setup and use of this software.
  • Every virus that is not automatically cleaned by the virus protection software constitutes a security incident and must be reported to the Help Desk.

Enforcement

Violation of this policy may result in disciplinary action which may include termination for employees and temporaries; a termination of employment relations in the case of contractors or consultants; dismissal for interns and volunteers; or suspension or expulsion in the case of a student. Additionally, individuals are subject to loss of [variable: Covered Organization] Information Resources access privileges, civil, and criminal prosecution.

Supporting Documentation

This policy is supported by the following rules, standards, and procedures:

  • [variable: internal documents (with links, if available)]
  • [variable: external documents (with links, if available)]

Policy Support Contact

  • [variable: title (not personal name) of role responsible for overseeing this procedure]
  • [variable: Contact information of office responsible for overseeing this procedure]

References

Policy Source Document(s)

State of Texas, Department of Information Resources

 

Hide comment form

Antispam Refresh image Case sensitive