Dasar Keselamatan ICT MATRADE

DASAR KESELAMATAN ICT MATRADE ii KANDUNGAN PENGENALAN ............................................................................................................ 1 OBJEKTIF ............................................................................................................. 1 SKOP .............................................................................................................. 1 PRINSIP-PRINSIP ........................................................................................................ 2 PERKARA 01 PEMBANGUNAN DAN PENYELENGGARAAN DASAR ........................ 4 010101 Pelaksanaan Dasar ............................................................................ 4 010102 Penyebaran Dasar ............................................................................. 4 010103 Penyelenggaraan Dasar ................................................................... 4 010104 Pengecualian Dasar .......................................................................... 4 PERKARA 02 ORGANISASI KESELAMATAN ............................................................. 5 0201 Infrastruktur Organisasi Keselamatan ............................................... 5 020101 Ketua Eksekutif .................................................................................... 5 020102 Ketua Pegawai Maklumat (CIO) ...................................................... 5 020103 Pengarah ICT ...................................................................................... 6 020104 Pegawai Keselamatan ICT (ICTSO) .................................................. 6 020105 Pentadbir Sistem ICT........................................................................... 7 020106 Pengguna ........................................................................................... 8 0202 Pihak Ketiga........................................................................................ 9 020201 Keperluan Keselamatan Kontrak dengan Pihak Ketiga.................9 PERKARA 03 KAWALAN DAN PENGELASAN ASET ................................................. 10 0301 Akauntabiliti Aset.............................................................................. 10 030101 Inventori Aset .................................................................................... 10 0302 Pengelasan dan Pengendalian Maklumat................................... 10 030201 Pengelasan Maklumat..................................................................... 10 030202 Pengendalian Maklumat................................................................. 10 PERKARA 04 KESELAMATAN SUMBER MANUSIA ................................................... 12 0401 Keselamatan ICT Dalam Tugas Harian........................................... 12 040101 Tanggungjawab Keselamatan ....................................................... 12 040102 Terma dan Syarat Perkhidmatan.................................................... 12 040103 Perakuan Akta Rahsia Rasmi........................................................... 12 0402 Menangani Insiden Keselamatan ICT ............................................ 12 040201 Pelaporan Insiden............................................................................. 12 0403 Pendidikan ........................................................................................ 13 040301 Program Kesedaran Keselamatan ICT ........................................... 13

RkJQdWJsaXNoZXIy NjUyODU0