Policies and Governance
Hytec helps organisations to implement well matched strategies for managing their policies and information governance
Overview
Ensuring that sensitive data is handled correctly is the foundation of good working practices, however the policies and procedures governing the use and transmission of sensitive data within and between organisations are not a standard document.
Variables such as the scope of business activities, number of employees, whether the business operates internationally, who the organisation partners with, and changing technologies will all affect the degree of governance that needs to be in place to ensure good working practice and prevent serious incidents of data breaches and/ or loss from occurring.
For some industries, such as public sector and those organisations working with the public sector, certain standards must be adhered to before governing bodies (such as the Department for Work & Pensions, Department for Schools, Children & Families and the Department of Health) will allow access to sensitive data.
For other industries working with confidential or sensitive data, adhering to good practice guidelines for information security management through the use of coherent and clear policies available to all staff, and correctly followed procedures will allow organisations to expand their activities and demonstrate best practice among their industry peers.
Hytec’s policy development service provides policies which are designed around your organisation and working practices, and can include internal training courses or resources, and guidance on development of awareness programmes.
Where policies are no longer relevant to the organisation, governance requirements must be in place between organisations and their partners and suppliers. Hytec can provide assistance with the design and negotiation of Information Sharing Protocols and Codes of Connection.
How can Hytec help?
Hytec’s Information Assurance (IA) Team will take a holistic approach to information security management in your organisation.
By reviewing existing written policies and procedures, our team will look at areas which are out of date or do not accurately reflect the business processes of the organisation.
It may be necessary, depending on the type of activities undertaken by the customer, to drill down to departmental level to review, or establish policies that both compliment the overall business guidelines but are more relevant to that particular department (because of, for example, direct handling of identifiable data).
For those organisations looking to undertake a complete overhaul of their information security, our IA Team can work with your team to establish new information security policies and staff procedures to encompass every aspect of your business.
As a package, we will audit your organisation on an annual basis and update your policies to reflect changes to the organisation. The handling of sensitive information is not just concerned with people.
Information Technology plays an important role in how data is transmitted or communicated and it is important to make sure that the infrastructure used to do this is capable of providing adequate protection to the organisation and its information.
Our technical team, consisting of consultants with organisational accreditations such as TigerScheme, Checkpoint, Microsoft and CESG, are able to look at an organisations’ IT infrastructure and ensure it complies with standards for information security management, making recommendations for changes and updates, and carrying out this work if necessary to fulfil information security requirements.
In addition to our consultative, written and technical work, our Information Assurance Team can hold training workshops for staff which support industry standards such as BSI and the International Information Security Standard, ISO 27001; even mentoring your organisation down the route to ISO 27001 registration- the ultimate accreditation in industry best practice for information security management.
If you would like more information on any of the above services, click here or call our helpful sales team on 01865 887 428.