Page 1574 - (ISC)² CISSP Certified Information Systems Security Professional Official Study Guide
P. 1574

owner, custodian, operator/user, and auditor.

                6.  The four components of a security policy are policies, standards,
                    guidelines, and procedures. Policies are broad security statements.

                    Standards are definitions of hardware and software security
                    compliance. Guidelines are used when there is not an appropriate
                    procedure. Procedures are detailed step-by-step instructions for
                    performing work tasks in a secure manner.
   1569   1570   1571   1572   1573   1574   1575   1576   1577   1578   1579