Policies and Standards

Last updated on May 7, 2024

Description



Policies and standards describe the rules an organization uses to protect its data and computer systems. These rules outline the countermeasures, training, and plans that an organization must maintain to ensure it is adequately prepared to detect, contain, and recover from an attack.
 
CyberBC provides training, education, and coaching services to support clients’ policy development, review their policies, and make recommendations to align to best practice. This includes policy and standards information sessions and workshops.

Outcomes


 

  • Better protection against cyberattacks.
  • Organizational knowledge of cybersecurity policy best practice, development, and implementation.
  • Available cybersecurity policy developed to B.C. government standards.
  • Access to foundational policies that are vetted by CyberBC professionals.
  • Expend fewer resources on policy development by leveraging existing examples of draft policies and standards.

Resources



CyberBC Packages
A list of our foundational and enhanced IM/IT policies, standards, and specifications.
Policies give high-level statements of intent.
Standards provide controls that support and expand on the policy statements.
Specifications provide technical guidance to support the controls in the standard.