CORPORATE
SEAL OF SECURITY
The
following minimum requirements are required by any business
applying for the Corporate Seal of Security. Please note that
these requirements are for guidance and minimum purposes.
The final decision of awarding the Corporate Seal of Security
is made by the Information Security Research Institute's Board
of Directors.
MINIMUN
REQUIREMENTS FOR THE
CORPORATE SEAL OF SECURITY
The Business
has conducted an Information "Process" Risk Assessment
and implemented mechanisms to secure the process for five
departments (units).
OR
The
Business has conducted an Information "Process"
Risk Assessment and implemented mechanisms for one department
during the course of a workshop in which at least one manager/employee
team is trained to perform the assessment.
AND
The
Business uses Personnel Selection tests with 1) verifiable
evidence for validity and reliability that are 2) designed
to select "in" honest job applicants and select
"out" dishonest job applicants and that 3) comply
with Title VII and the Guidelines of the Equal Opportunity
Commission for Fairness in Selection.
The Business has an Identity Theft
Prevention and Advocacy Program and devotes resources to actively
maintain the program.
The Information Security Research
Institute has conducted an e-Commerce Risk Assessment for
the Business, and the Business has implemented mechanisms
for e-Commerce security.
The Research Institute has conducted
a Website Risk Assessment for the Business, and the Business
has implemented privacy and security mechanisms.
The Business agrees that the Institute's
Security Board shall have the right to inspect documents verifying
the completion of all minimum requirements.
Back
to About Us
Back
to Board of Directors
Back
to Services for Businesses
_______________________________
_______________________________
Services
for Businesses
| Services for Victims |
|
Services
for Attorneys |
|
Services
for Law Enforcement |
|
Services
for Media |
|
About
Us | Contact Us |
Privacy Policy | Site
Map | Home
Copyright
©2003 Information Security Research Institute
ISRI is a Division of Collins Professionals LLC.
All Rights Reserved.
|