There’s no shortage of security technologies that can help organizations
protect their networks, systems and information. Firewalls, intrusion
detection and prevention systems, antivirus software, encryption and
other tools can be extremely effective in thwarting attacks and preventing
unauthorized users from getting into systems and networks.
However, an effective information security strategy must go beyond technology implementation. Businesses need to deploy a comprehensive network security policy that ensures the tools are being used to the maximum effectiveness. It also should specify that employees-- and in some cases business partners and customers — are following best practices to ensure that networks and sensitive data are not being compromised.
Read this paper to learn the essentials of defining and implementing a security policy for your organization.