NB physical security module contents

advertisement
NoticeBored information security
Physical security module contents
Contents listing of the awareness module on
Physically securing information assets
Item
Type
Notes
Use?
Stream A: security awareness materials for staff/all employees
1. Train-the-trainer
guide on physical
security
MS Word
document
6 pages
START HERE! Get the most out of this
month’s module with our tips and
innovative awareness ideas
2. Awareness seminar
on physical security
MS PowerPoint
presentation
18 slides with
speaker notes
Explains how intruders intrude, making
the point that both intruders and
authorized penetration testers may
appear identical and employ the same
social engineering tricks
3. Awareness posters
on physical security
6 high-resolution
JPG images
Graphic images to print out and/or
incorporate into other awareness
materials
4 PC
screensavers
Slideshows display the 3 sets of
PowerPoint slides or the poster images
4. Awareness
screensavers on
physical security
5. Awareness briefing
on physical security
2 pages
Concerns physical security threats and
controls, especially access controls
6. Procedure on
missing staff pass
1 pages
What to do if you misplace your pass, or if
it is stolen
7. Case study on
physical security
2 pages
Jane’s day gets off to a really bad start
because the office has been burgled
8. Staff top tips on
physical security
1 page, 15 tips
General advice (do’s and don’ts) on
physical security matters
1 page
Physical security ideas for the
personal/home context
x4
Tips and quotations, designed for doublesided printing and laminating as old-skool
book marks
11. Awareness
crossword on
physical security
with solution
Separate the solution page from the
puzzle before publishing or circulating if
you offer a prize!
12. FAQ on physical
security
1 pages
Addresses basic rhetorical questions
about physical security
9. Take home messages
on physical security
10. Security awareness
bookmarks on
physical security
Copyright © 2015 IsecT Ltd.

Page 1 of 3
NoticeBored information security
Item
Physical security module contents
Type
Notes
Use?
13. Awareness quiz on
physical security
2 pages
Turns information security education into
a fun social event
14. Awareness survey on
physical security
1 page
A simple measure of awareness on this
topic, and a chance to gather feedback
15. Awareness test on
physical security
1 page
Check recall and comprehension of the
main awareness messages
135 pages
Several new terms added this month
include “attagging” and “ram-raid”
16. Hyperlinked glossary
of physical security
and other specialist
terms of art
Stream B: security awareness materials for managers
17. Mind-maps &
diagrams on physical
security
9 MS Visio
drawings
Explanatory diagrams used in various
other materials, provided in Visio for you
to customize or adapt as you wish
18. Management
seminar on physical
security
16 slides with
speaker notes
Mostly concerned with burglary-type site
intrusions with theft of information
assets
19. Board agenda on
physical security
1 page
20. Elevator pitch on
physical security
1 page,
114 words
A rhetorical device gets senior managers
discussing physical security
Direct
6 off
6 generic policy templates, to some
extent concerning physical (information)
security matters
22. Executive briefing on
physical security
1 page
About conducting physical site
penetration tests
23. Management
briefing on physical
security
4 pages
Discusses physical risks and controls for a
management audience
1 page
Generic job description for a manager to
take the lead on physical security matters
on a given site/premises
6 pages
Ways to measure, assess and if
appropriate improve physical
(information) security
21. Model policies on
physical security
24. Job description for
Site Security
Manager
25. Management
briefing on physical
security metrics
Copyright © 2015 IsecT Ltd.
Page 2 of 3
NoticeBored information security
Item
Physical security module contents
Type
Notes
Use?
Stream C: security awareness materials for professionals
26. Newsletter on
physical security
27. Professional seminar
on physical security
28. Professional briefing
on physical security
29. Internal Controls
Questionnaire on
physical security
Copyright © 2015 IsecT Ltd.
4 pages
17 slides with
speaker notes
An overview illustrated with relevant
clippings/newsbytes
Set information/IT security, risk,
compliance & other professionals
thinking seriously about physical security
7 pages
Highlights technical security controls
relevant to physical security
15 pages
Lots of suggestions on how to check the
organization’s physical security
arrangements – probably too much for
one audit but, trust me, it’s much easier
to trim down and adapt/customize the
generic ICQ than to write one entirely
from scratch!
Page 3 of 3
Download