Personnel Security Policy
Subscriber Content

The purpose of this sample policy is to reduce the risks of human error, theft, fraud or misuse of facilities.
In this sample, security roles and responsibilities outlined in the organization's information security policy must be documented in job definitions where appropriate, verification checks on permanent staff must be carried out at the time of job applications, employees must sign a confidentiality agreement as part of their initial terms and conditions of employment, the terms and conditions of employment must state the employee's responsibility for information security, and procedures must be established and followed for reporting software malfunctions.