home/dictionary/information security policy

information security policy

nouncandidate·updated May 9, 2026

The rules and guidelines of an organization on how to ensure the confidentiality, integrity, and availability of the organization's information.

Framework senses

National Initiative for Cybersecurity Careers and Studies (NICCS) Cybersecurity Lexicon1 senseview framework →
§1
An aggregate of directives, regulations, rules, and practices that prescribe how an organization manages, protects, and distributes information.
NIST Cybersecurity Framework1 senseview framework →
§1
The rules and guidelines of an organization on how to ensure the confidentiality, integrity, and availability of the organization's information.
FFIEC IT Examination Handbook - Audit, April 20121 senseview framework →
§1
The rules and guidelines of an organization on how to ensure the confidentiality, integrity, and availability of the organization's information.
NY DFS Part 500 (NYCRR Title 23, Chapter 1, Part 500)1 senseview framework →
§1
The rules and guidelines of an organization on how to ensure the confidentiality, integrity, and availability of the organization's information.
NISTIR 7298: Glossary of Key Information Security Terms, Revision 21 senseview framework →
§1
Aggregate of directives, regulations, rules, and practices that prescribes how an organization manages, protects, and distributes information.
CNSSI-4009 (Glossary of Information Assurance Terms)1 senseview framework →
§1
Aggregate of directives, regulations, rules, and practices that prescribes how an organization manages, protects, and distributes information.
NIST SP 800-531 senseview framework →
§1
Aggregate of directives, regulations, rules, and practices that prescribes how an organization manages, protects, and distributes information.
NIST SP 800-371 senseview framework →
§1
Aggregate of directives, regulations, rules, and practices that prescribes how an organization manages, protects, and distributes information.
NIST SP 800-181 senseview framework →
§1
Aggregate of directives, regulations, rules, and practices that prescribes how an organization manages, protects, and distributes information.