Introduction – Explain what the purpose of this document is and why the topic is important
Office suite access policy – Explain what the policy is to actually enter an office suite. If there is a receptionist/security guard? If so what are their hours? What is the policy for accessing the office outside of business hours? What technology is in use to protect the office suite? Are there camera’s, card reader’s, turnstiles, etc….? Are there any limitations on access hours to the office? If so what is the after-hours access policy?
Data center access policy – Explain what the policy is for accessing the data center, i.e. who will be allowed access to the data center? Is access allowed all day long or only after business hours? If access is limited to only after business hours what if an emergency happens like a device failure? How will the data center be secured, i.e. card readers, keys, security guard, man trap? Are camera’s required? Will the equipment cabinets be secured? If so how? What is the policy for allowing access for non-employees such as vendors?
IT closet access policy – Explain what the policy is for accessing the IT closets, i.e. who will be allowed access to the IT closets? Is access allowed all day long or only after business hours? If access is limited to only after business hours what if an emergency happens like a device failure? How will the IT closets be secured, i.e. card readers, keys, security guard, man trap? Are camera’s required? What is the policy for allowing access for non-employees such as vendors?
Use of USB drives or removable media – What is the company policy for using removable media such as USB/thumb drives? How will you enforce the policy?