The guidelines, based on the information security management standard ISO 17799, set out to raise awareness of web security is a business and financial issue, and offer a framework for developing and implementing security policies including business continuity management and access control.
CSSA director Tim Conway warned that technology alone was not enough to safeguard systems. 'It's about good common sense management practices as well as technology.'
Only 50 per cent of IT directors have a security policy and of those who do, 60 per cent do not check compliance to that policy, according to a survey conducted by IT services company CSC.
The link for this article located at vnunet is no longer available.