Skip over navigation
Ultima Risk Management Logo linking to homepage
  • Contact us
  • Site map
  • Home
  • Consultancy
    • Introduction
    • Information Security (ISO 27001)
    • Business Continuity Management (BS 25999)
    • PCI DSS
    • IT Service Management (ITIL & ISO 20000)
    • Data Protection
    • Information Risk Management
    • Software Asset Management
    • Polices & Procedures
  • Training
    • Training Courses
    • CISMP - ISEB Certificate in Information Security Management Principles
    • PCBCM - ISEB Practitioner Certificate in Business Continuity Management
    • PCIRM - ISEB Practitioner Certificate in Information Risk Management
    • SAM - ISEB Certificate in Software Asset Management Essentials
    • PCSAM - ISEB Practitioner Certificate in Software Asset Management
    • BCM - BCI Understanding BCM Principles and Good Practice
    • All other courses
    • Training Schedule
  • Products
    • ISO 27001 Risk Assessment Tool
    • BS 25999 Risk Assessment Tool
  • Events
    • BS 25999 Implementation Seminar
  • Case Studies
    • Audatex - Global first Dual certification
  • About us
    • Company Profile
    • URM's Partners
    • How to contact us
Home / Consulting / Policies & Procedures
getting the balance right
Getting the Balance Right

URM's Approach to Policies & Procedures

URM's proven and guaranteed approach to developing pragmatic policies and procedures for its customers is based on the need to align requirements to identified business requirements and presenting them in a structured manner that facilitates compliance.

URM's consultants can advise on the identification and structure of policies and procedures, editorial standards and document management to ensure that all developed documents are properly reviewed and approved prior to release.

Where customers already have a range of policies and procedures, URM can offer services to review these to ensure both completeness and fitness for purpose. URM’s consultants have significant experience not just of information security but also the laws and regulations surrounding the subject.

URM can provide invaluable expertise when it comes to the implementation of and compliance to policies and procedures through the adoption of appropriate distribution, enforcement and audit mechanisms.

Having invested the resources needed to develop policies and procedures, it is important that their value is not eroded by failing to maintain them. URM can offer services and software tools that will facilitate this process so that organisations are not exposed by having out of date policies.

Policies provide staff with a clear definition of the goals of the business and should be approved by the Executive. Effective and appropriate policies will allow management to discharge their legal obligations whilst setting down a framework for the protection of important business assets.

Procedures are required to ensure that Policy objectives are delivered in a consistent way. Practical procedures, that are complementary to an organisation’s risks and its culture, will help to gain buy in and acceptance so that the number of security incidents is reduced to a minimum. Procedures are also vital in organisations or departments because they can act as a training aid and contingency plan if key staff are unavailable to perform vital operational activities.

Without a structured set of policies and procedures, management will neither be able to demonstrate that business assets are being protected in an effective manner not comply with important legislation such as the Data Protection Act, Copyright, Designs and Patents Act and Companies Act.

  • Introduction
  • Information Security (ISO 27001)
  • Business Continuity Management (BS 25999)
  • PCI DSS
  • IT Service Management (ITIL & ISO 20000)
  • Data Protection
  • Information Risk Management
  • Software Asset Management
  • Polices & Procedures
  • URM's approach to Polices & Procedures

Copyright © Ultima Risk Management, 2008. All Rights Reserved.

contact us | careers | terms of use | privacy | site map