Вы находитесь на странице: 1из 23

-INFORMATION TECHNOLOLGY POLICY AND

PROCEDURE MANUAL TEMPLATE


Note: Delete this and the next page once you complete the template.
Who s houl d us e t hi s t empl at e?
Small to medium sized usi!ess o"!e#s "$o use i!%o#matio! te&$!olo'( i! t$ei#
usi!ess)
Why us e a pol i cy and pr ocedur e manual ?
T$is I!%o#matio! Te&$!olo'( *IT+ ,oli&( a!d ,#o&edu#e ma!ual is %o# t$e small to medium
sized usi!ess o"!e# a!d t$ei# em,lo(ees)
T$e mai! e!e%its to $a-i!' t$is ,oli&( a!d ,#o&edu#e ma!ual.
e!su#es all sta%% a#e a"a#e o% oli'atio!s i! #elatio! to sele&tio!/ use a!d sa%et(
"$e! utilisi!' i!%o#matio! te&$!olo'( "it$i! t$e usi!ess
is a ,#o-e! "a( to $el, (ou# ma!a'e#s a!d su,e#-iso#s ma0e &o!siste!t a!d
#eliale de&isio!s
$el,s 'i-e ea&$ em,lo(ee a &lea# u!de#sta!di!' as to "$at (ou e1,e&t a!d allo")
It ta0es a little e%%o#t to &om,lete/ ut #i!'s de%i!ite lo!'-te#m e!e%its/ #edu&es dis,utes/
a!d adds to t$e ,#o%essio!alism o% (ou# usi!ess)
How t o compl et e t hi s t empl at e
Designed to be customised
T$is tem,late %o# a! IT ,oli&( a!d ,#o&edu#es ma!ual is made u, o% e1am,le to,i&s) You
&a! &ustomise t$ese i% (ou "is$/ %o# e1am,le/ ( addi!' o# #emo-i!' to,i&s)
To &om,lete t$e tem,late.
2) 3$e#e (ou see a guidance note (delete this later) #ead a!d t$e! delete it)
T$ese $a-e ee! added to $el, (ou &om,lete t$e tem,late) T$e( a#e !ot mea!t to
e ,a#t o% (ou# %i!al -e#sio!)
4) Re,la&e <Insert with relevant details here>"it$ (ou# o"! "o#di!')
5) 3$e#e (ou see a #e%e#e!&e to Poli&(/ t$is ,#o-ides a li!0 to a!ot$e# e1am,le
,oli&( (ou ma( li0e to #e%e# to
6) O!&e (ou $a-e %i!is$ed "o#0 o! t$e tem,late/ delete this and the following
page.
7) Lastl( #efresh the page numbers in the
table of contents) Ri'$t mouse &li&0 o! t$e
tale o% &o!te!ts 8 &$oose 9U,date Field: 8
&$oose 9U,date ,a'e !ume#s o!l(:)
IT Policy and Procedure Manual
Ot her t i ps
To sto, t$is ,oli&( ma!ual sitti!' o! a des0 &olle&ti!' dust/ ma0e it a li-i!'
do&ume!t) Ho"; As0 (ou# sta%% %o# t$ei# t$ou'$ts o! $o" to im,#o-e it) T$e!
#e-ie" it e-e#( si1 mo!t$s)
Ma0e e1,lai!i!' (ou# ,oli&ies a!d ,#o&edu#es a! im,o#ta!t ,a#t o% (ou# i!du&tio!
,#o&ess)
Lea-e t$e "o#ds 9Do&ume!t -alid "$e! ,#i!ted o!l(: i! t$e %oote# to #emi!d t$e
#eade# t$e( mi'$t e usi!' a! out-o%-date &o,() *T$e 9Last ,#i!ted: date
automati&all( u,dates i! t$e %oote# "$e! (ou ,#i!t) You do!:t !eed to u,date t$is)+
T#( to dest#o( o# a#&$i-e all out-o%-date &o,ies)
T$e "#iti!' st(le does!:t !eed to e %o#mal o# lo!'"i!ded to e e%%e&ti-e) Use
sim,le se!te!&es a!d ,lai! E!'lis$ to #edu&e t$e &$a!&e a! em,lo(ee o#
ma!a'e# "ill e &o!%used aout t$e i!te!t o% (ou# ,oli&( o# t$e "a( to &a##( out a
,#o&edu#e)
Note: Delete this and the previous page once you complete the template.
Document valid when printed only Last printed 10/05/2013 13:30:00 a5/p5
Page 2 of 23
Disclaimer
The information in this publication is for general guidance only. The State of Victoria does not make any
representations or warranties (expressed or implied) as to the accuracy, currency or authenticity of the information.
The State of Victoria, its employees and agents do not accept any liability to any person for the information or
advice given in this document. uthorised by the Victorian !overnment, ""# $xhibition Street, %elbourne, #&&&.
' (epartment of )usiness and *nnovation +&"".
INFORMATION TECHNOLOGY POLICY
AND PROCEDURE MANUAL
Table of Contents
I!t#odu&tio! ))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))) 5
Te&$!olo'( Ha#d"a#e Pu#&$asi!' Poli&( )))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))6
Poli&( %o# Getti!' So%t"a#e ))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))) <
Poli&( %o# Use o% So%t"a#e )))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))) =
>#i!' You# O"! De-i&e Poli&( )))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))) 22
I!%o#matio! Te&$!olo'( Se&u#it( Poli&()))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))26
I!%o#matio! Te&$!olo'( Admi!ist#atio! Poli&()))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))2?
3esite Poli&())))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))) 2@
Ele&t#o!i& T#a!sa&tio!s Poli&())))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))) 2=
IT Se#-i&e A'#eeme!ts Poli&()))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))) 42
Eme#'e!&( Ma!a'eme!t o% I!%o#matio! Te&$!olo'())))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))44
I nt r oduct i on
T$e <Insert business name here> IT Poli&( a!d P#o&edu#e Ma!ual ,#o-ides t$e ,oli&ies a!d
,#o&edu#es %o# sele&tio! a!d use o% IT "it$i! t$e usi!ess "$i&$ must e %ollo"ed ( all sta%%) It
also ,#o-ides 'uideli!es <Insert business name here> "ill use to admi!iste# t$ese ,oli&ies/ "it$
t$e &o##e&t ,#o&edu#e to %ollo")
<Insert business name here> "ill 0ee, all IT ,oli&ies &u##e!t a!d #ele-a!t) T$e#e%o#e/ %#om time
to time it "ill e !e&essa#( to modi%( a!d ame!d some se&tio!s o% t$e ,oli&ies a!d ,#o&edu#es/ o#
to add !e" ,#o&edu#es)
A!( su''estio!s/ #e&omme!datio!s o# %eeda&0 o! t$e ,oli&ies a!d ,#o&edu#es s,e&i%ied i! t$is
ma!ual a#e "el&ome)
T$ese ,oli&ies a!d ,#o&edu#es a,,l( to all em,lo(ees)
Technol ogy Har dwar e Pur chasi ng Pol i cy
Policy Number: <insert unique number>
Policy Date: <insert date of policy>
This policy should be read and carried out by all staff. Edit this policy so it suits the needs of your
business.
Computer hardware refers to the physical parts of a computer and related devices. Internal
hardware devices include motherboards, hard drives, and R!. E"ternal hardware devices
include monitors, #eyboards, mice, printers, and scanners
Purpose of the Policy
T$is ,oli&( ,#o-ides 'uideli!es %o# t$e ,u#&$ase o% $a#d"a#e %o# t$e usi!ess to e!su#e t$at all
$a#d"a#e te&$!olo'( %o# t$e usi!ess is a,,#o,#iate/ -alue %o# mo!e( a!d "$e#e a,,li&ale
i!te'#ates "it$ ot$e# te&$!olo'( %o# t$e usi!ess) T$e oAe&ti-e o% t$is ,oli&( is to e!su#e t$at
t$e#e is mi!imum di-e#sit( o% $a#d"a#e "it$i! t$e usi!ess)
Procedures
Purchase of Hardware
T$e ,u#&$ase o% all des0to,s/ se#-e#s/ ,o#tale &om,ute#s/ &om,ute# ,e#i,$e#als a!d moile
de-i&es must ad$e#e to t$is ,oli&() Edit this statement to cover the relevant technology for your
business.
urchasing des!top computer systems
$or assistance with Choosing hardware and software, including des#top computers, visit %usiness
&ictoria's Choosing hardware and software page.
T$e des0to, &om,ute# s(stems ,u#&$ased must #u! a <insert relevant operating system here
e.g. "indows> a!d i!te'#ate "it$ e1isti!' $a#d"a#e < insert names of existing technology
such as the business server>)
T$e des0to, &om,ute# s(stems must e ,u#&$ased as sta!da#d des0to, s(stem u!dle a!d must
e <insert manufacturer type here# such as $# Dell# %cer etc.>)
T$e des0to, &om,ute# s(stem u!dle must i!&lude.
Des0to, to"e#
Des0to, s&#ee! o% <insert screen si&e here>
Be(oa#d a!d mouse (ou may li#e to consider stating if these are to be wireless
<insert name of operating system# e.g. "indows '# and software e.g. (ffice )*+,
here>
<insert other items here# such as spea!ers# microphone# webcam# printers etc.>
T$e mi!imum &a,a&it( o% t$e des0to, must e.
<insert speed of computer si&e -.$& /gigahert&0here>
<insert memory -1%20 si&e here>
<insert number of 345 ports here>
<insert other specifications for des!top here# such as D6D drive# microphone port#
etc.>
A!( &$a!'e %#om t$e ao-e #eCui#eme!ts must e aut$o#ised ( <insert relevant 7ob title here>
All ,u#&$ases o% des0to,s must e su,,o#ted (<insert guarantee and8or warranty
requirements here> a!d e &om,atile "it$ t$e usi!ess:s se#-e# s(stem)
All ,u#&$ases %o# des0to,s must e i! li!e "it$ t$e ,u#&$asi!' ,oli&( i! t$e Fi!a!&ial ,oli&ies a!d
,#o&edu#es ma!ual)
urchasing portable computer systems
T$e ,u#&$ase o% ,o#tale &om,ute# s(stems i!&ludes <insert names of portable devices here#
such as noteboo!s# laptops# tablets etc.>
Po#tale &om,ute# s(stems ,u#&$ased must #u! a <insert relevant operating system here e.g.
"indows> a!d i!te'#ate "it$ e1isti!' $a#d"a#e < insert names of existing technology such as
the business server>)
T$e ,o#tale &om,ute# s(stems ,u#&$ased must e <insert manufacturer type here# such as
$# Dell# %cer# etc.>)
T$e mi!imum &a,a&it( o% t$e ,o#tale &om,ute# s(stem must e.
<insert speed of computer si&e -.$& /gigahert&0here>
<insert memory -1%20 si&e here>
<insert number of 345 ports here>
<insert other specifications for portable device here# such as D6D drive# microphone
port# webcam# spea!ers# etc.>
T$e ,o#tale &om,ute# s(stem must i!&lude t$e %ollo"i!' so%t"a#e ,#o-ided.
<insert names of software e.g. (ffice )*+,# %dobe# 1eader# Internet 9xplorer here>
<insert names of software e.g. (ffice )*+,# %dobe# 1eader# Internet 9xplorer here>
<insert names of software e.g. (ffice )*+,# %dobe# 1eader# Internet 9xplorer here>
A!( &$a!'e %#om t$e ao-e #eCui#eme!ts must e aut$o#ised ( <insert relevant 7ob title here>
All ,u#&$ases o% all ,o#tale &om,ute# s(stems must e su,,o#ted (<insert guarantee and8or
warranty requirements here> a!d e &om,atile "it$ t$e usi!ess:s se#-e# s(stem)
All ,u#&$ases %o# ,o#tale &om,ute# s(stems must e i! li!e "it$ t$e ,u#&$asi!' ,oli&( i! t$e
Fi!a!&ial ,oli&ies a!d ,#o&edu#es ma!ual)
urchasing server systems
Se#-e# s(stems &a! o!l( e ,u#&$ased ( <insert relevant 7ob title here# recommended I:
specialist>)
Se#-e# s(stems ,u#&$ased must e &om,atile "it$ all ot$e# &om,ute# $a#d"a#e i! t$e usi!ess)
All ,u#&$ases o% se#-e# s(stems must e su,,o#ted (<insert guarantee and8or warranty
requirements here> a!d e &om,atile "it$ t$e usi!ess:s ot$e# se#-e# s(stems)
A!( &$a!'e %#om t$e ao-e #eCui#eme!ts must e aut$o#ised ( <insert relevant 7ob title here>
All ,u#&$ases %o# se#-e# s(stems must e i! li!e "it$ t$e ,u#&$asi!' ,oli&( i! t$e Fi!a!&ial ,oli&ies
a!d ,#o&edu#es ma!ual)
urchasing computer peripherals
Com,ute# s(stem ,e#i,$e#als i!&lude <insert names of add/on devices such as printers#
scanners# external hard drives etc. here>
Com,ute# ,e#i,$e#als &a! o!l( e ,u#&$ased "$e#e t$e( a#e !ot i!&luded i! a!( $a#d"a#e
,u#&$ase o# a#e &o!side#ed to e a! additio!al #eCui#eme!t to e1isti!' ,e#i,$e#als)
Com,ute# ,e#i,$e#als ,u#&$ased must e &om,atile "it$ all ot$e# &om,ute# $a#d"a#e a!d
so%t"a#e i! t$e usi!ess)
T$e ,u#&$ase o% &om,ute# ,e#i,$e#als &a! o!l( e aut$o#ised ( <insert relevant 7ob title here#
recommended I: specialist or department manager>)
All ,u#&$ases o% &om,ute# ,e#i,$e#als must e su,,o#ted (<insert guarantee and8or warranty
requirements here> a!d e &om,atile "it$ t$e usi!ess:s ot$e# $a#d"a#e a!d so%t"a#e s(stems)
A!( &$a!'e %#om t$e ao-e #eCui#eme!ts must e aut$o#ised ( <insert relevant 7ob title here>
All ,u#&$ases %o# &om,ute# ,e#i,$e#als must e i! li!e "it$ t$e ,u#&$asi!' ,oli&( i! t$e Fi!a!&ial
,oli&ies a!d ,#o&edu#es ma!ual)
urchasing mobile telephones
A moile ,$o!e "ill o!l( e ,u#&$ased o!&e t$e eli'iilit( &#ite#ia is met) Re%e# to t$e Moile
P$o!e Usa'e ,oli&( i! t$is do&ume!t)
T$e ,u#&$ase o% a moile ,$o!e must e %#om <insert names authorised suppliers here# such
as :elstra etc.> to e!su#e t$e usi!ess ta0es ad-a!ta'e o% -olume ,#i&i!' ased dis&ou!ts
,#o-ided ( <insert names authorised suppliers here# such as :elstra etc.>) )uch discounts
should include the purchase of the phone, the phone call and internet charges etc.
T$e moile ,$o!e must e &om,atile "it$ t$e usi!ess:s &u##e!t $a#d"a#e a!d so%t"a#e s(stems)
T$e moile ,$o!e ,u#&$ased must e <insert manufacturer type here# such as Ihone#
5lac!berry# 4amsung# etc.>)
T$e #eCuest %o# a&&esso#ies *a $a!ds-%#ee 0it et&)+ must e i!&luded as ,a#t o% t$e i!itial #eCuest %o#
a ,$o!e)
T$e ,u#&$ase o% a moile ,$o!e must e a,,#o-ed ( <insert relevant 7ob title here> ,#io# to
,u#&$ase)
A!( &$a!'e %#om t$e ao-e #eCui#eme!ts must e aut$o#ised ( <insert relevant 7ob title here>
All ,u#&$ases o% all moile ,$o!es must e su,,o#ted (<insert guarantee and8or warranty
requirements here>)
All ,u#&$ases %o# moile ,$o!es must e i! li!e "it$ t$e ,u#&$asi!' ,oli&( i! t$e Fi!a!&ial ,oli&ies
a!d ,#o&edu#es ma!ual)
Additional Policies for Purchasing Hardware
Pu#&$asi!' Poli&(
Moile ,$o!e ,oli&(
Pol i cy f or Get t i ng Sof t war e
Policy Number: <insert unique number>
Policy Date: <insert date of policy>
This policy should be read and carried out by all staff. Edit this policy so it suits the needs of your
business.
Purpose of the Policy
T$is ,oli&( ,#o-ides 'uideli!es %o# t$e ,u#&$ase o% so%t"a#e %o# t$e usi!ess to e!su#e t$at all
so%t"a#e used ( t$e usi!ess is a,,#o,#iate/ -alue %o# mo!e( a!d "$e#e a,,li&ale i!te'#ates
"it$ ot$e# te&$!olo'( %o# t$e usi!ess) T$is ,oli&( a,,lies to so%t"a#e otai!ed as ,a#t o%
$a#d"a#e u!dle o# ,#e-loaded so%t"a#e)
Procedures
Request for Software
All so%t"a#e/ i!&ludi!' <insert relevant other types of non/commercial software such as open
source# freeware# etc. here> must e a,,#o-ed ( <insert relevant 7ob title here> ,#io# to t$e
use o# do"!load o% su&$ so%t"a#e)
Purchase of software
T$e ,u#&$ase o% all so%t"a#e must ad$e#e to t$is ,oli&()
All ,u#&$ased so%t"a#e must e ,u#&$ased ( <insert relevant 7ob title here>
All ,u#&$ased so%t"a#e must e ,u#&$ased %#om <insert relevant suppliers names or the words
;reputable software sellers< here>
All ,u#&$ases o% so%t"a#e must e su,,o#ted (<insert guarantee and8or warranty
requirements here> a!d e &om,atile "it$ t$e usi!ess:s se#-e# a!dDo# $a#d"a#e s(stem)
A!( &$a!'es %#om t$e ao-e #eCui#eme!ts must e aut$o#ised ( <insert relevant 7ob title here>
All ,u#&$ases %o# so%t"a#e must e i! li!e "it$ t$e ,u#&$asi!' ,oli&( i! t$e Fi!a!&ial ,oli&ies a!d
,#o&edu#es ma!ual)
(btaining open source or freeware software
*pen source or freeware software can be obtained without payment and usually downloaded
directly from the internet.
I! t$e e-e!t t$at o,e! sou#&e o# %#ee"a#e so%t"a#e is #eCui#ed/ a,,#o-al %#om <insert relevant 7ob
title here> must e otai!ed ,#io# to t$e do"!load o# use o% su&$ so%t"a#e)
All o,e! sou#&e o# %#ee"a#e must e &om,atile "it$ t$e usi!ess:s $a#d"a#e a!d so%t"a#e
s(stems)
A!( &$a!'e %#om t$e ao-e #eCui#eme!ts must e aut$o#ised ( <insert relevant 7ob title here>
Additional Policies for Obtaining Software
Pu#&$asi!' Poli&(
Use o% So%t"a#e ,oli&(
Pol i cy f or Use of Sof t war e
Policy Number: <insert unique number>
Policy Date: <insert date of policy>
This policy should be read and carried out by all staff. Edit this policy so it suits the needs of your
business.
Purpose of the Policy
T$is ,oli&( ,#o-ides 'uideli!es %o# t$e use o% so%t"a#e %o# all em,lo(ees "it$i! t$e usi!ess to
e!su#e t$at all so%t"a#e use is a,,#o,#iate) U!de# t$is ,oli&(/ t$e use o% all o,e! sou#&e a!d
%#ee"a#e so%t"a#e "ill e &o!du&ted u!de# t$e same ,#o&edu#es outli!ed %o# &omme#&ial so%t"a#e)
Procedures
Software Licensing
All &om,ute# so%t"a#e &o,(#i'$ts a!d te#ms o% all so%t"a#e li&e!&es "ill e %ollo"ed ( all
em,lo(ees o% t$e usi!ess)
3$e#e li&e!si!' states limited usa'e *i)e) !ume# o% &om,ute#s o# use#s et&)+/ t$e! it is t$e
#es,o!siilit( o% <insert relevant 7ob title here> to e!su#e t$ese te#ms a#e %ollo"ed)
<insert relevant 7ob title here> is #es,o!sile %o# &om,leti!' a so%t"a#e audit o% all $a#d"a#e
t"i&e a (ea# to e!su#e t$at so%t"a#e &o,(#i'$ts a!d li&e!&e a'#eeme!ts a#e ad$e#ed to)
Software Installation
All so%t"a#e must e a,,#o,#iatel( #e'iste#ed "it$ t$e su,,lie# "$e#e t$is is a #eCui#eme!t)
<insert business name here> is to e t$e #e'iste#ed o"!e# o% all so%t"a#e)
O!l( so%t"a#e otai!ed i! a&&o#da!&e "it$ t$e 'etti!' so%t"a#e ,oli&( is to e i!stalled o! t$e
usi!ess:s &om,ute#s)
All so%t"a#e i!stallatio! is to e &a##ied out ( <insert relevant 7ob title here>
A so%t"a#e u,'#ade s$all !ot e i!stalled o! a &om,ute# t$at does !ot al#ead( $a-e a &o,( o% t$e
o#i'i!al -e#sio! o% t$e so%t"a#e loaded o! it)
Software Usage
O!l( so%t"a#e ,u#&$ased i! a&&o#da!&e "it$ t$e 'etti!' so%t"a#e ,oli&( is to e used "it$i! t$e
usi!ess)
P#io# to t$e use o% a!( so%t"a#e/ t$e em,lo(ee must #e&ei-e i!st#u&tio!s o! a!( li&e!si!'
a'#eeme!ts #elati!' to t$e so%t"a#e/ i!&ludi!' a!( #est#i&tio!s o! use o% t$e so%t"a#e)
All em,lo(ees must #e&ei-e t#ai!i!' %o# all !e" so%t"a#e) T$is i!&ludes !e" em,lo(ees to e
t#ai!ed to use e1isti!' so%t"a#e a,,#o,#iatel() T$is "ill e t$e #es,o!siilit( o% <insert relevant
7ob title here >
Em,lo(ees a#e ,#o$iited %#om #i!'i!' so%t"a#e %#om $ome a!d loadi!' it o!to t$e usi!ess:s
&om,ute# $a#d"a#e)
U!less e1,#ess a,,#o-al %#om <insert relevant 7ob title here> is otai!ed/ so%t"a#e &a!!ot e
ta0e! $ome a!d loaded o! a em,lo(ees: $ome &om,ute#
3$e#e a! em,lo(ee is #eCui#ed to use so%t"a#e at $ome/ a! e-aluatio! o% ,#o-idi!' t$e em,lo(ee
"it$ a ,o#tale &om,ute# s$ould e u!de#ta0e! i! t$e %i#st i!sta!&e) 3$e#e it is %ou!d t$at so%t"a#e
&a! e used o! t$e em,lo(ee:s $ome &om,ute#/ aut$o#isatio! %#om <insert relevant 7ob title
here> is #eCui#ed to ,u#&$ase se,a#ate so%t"a#e i% li&e!si!' o# &o,(#i'$t #est#i&tio!s a,,l() 3$e#e
so%t"a#e is ,u#&$ased i! t$is &i#&umsta!&e/ it #emai!s t$e ,#o,e#t( o% t$e usi!ess a!d must e
#e&o#ded o! t$e so%t"a#e #e'iste# ( <insert relevant 7ob title here>
U!aut$o#ised so%t"a#e is ,#o$iited %#om ei!' used i! t$e usi!ess) T$is i!&ludes t$e use o%
so%t"a#e o"!ed ( a! em,lo(ee a!d used "it$i! t$e usi!ess)
T$e u!aut$o#ised du,li&ati!'/ a&Cui#i!' o# use o% so%t"a#e &o,ies is ,#o$iited) A!( em,lo(ee "$o
ma0es/ a&Cui#es/ o# uses u!aut$o#ised &o,ies o% so%t"a#e "ill e #e%e##ed to <insert relevant 7ob
title here> %o# <insert consequence here# such as further consultation# reprimand action
etc.>. T$e ille'al du,li&atio! o% so%t"a#e o# ot$e# &o,(#i'$ted "o#0s is !ot &o!do!ed "it$i! t$is
usi!ess a!d <insert relevant 7ob title here> is aut$o#ised to u!de#ta0e dis&i,li!a#( a&tio! "$e#e
su&$ e-e!t o&&u#s)
Breach of Policy
3$e#e t$e#e is a #ea&$ o% t$is ,oli&( ( a! em,lo(ee/ t$at em,lo(ee "ill e #e%e##ed to <insert
relevant 7ob title here> %o# <insert consequence here# such as further consultation#
reprimand action etc.>
3$e#e a! em,lo(ee is a"a#e o% a #ea&$ o% t$e use o% so%t"a#e i! a&&o#da!&e "it$ t$is ,oli&(/ t$e(
a#e oli'ed to !oti%( <insert relevant 7ob title here> immediatel() I! t$e e-e!t t$at t$e #ea&$ is
!ot #e,o#ted a!d it is dete#mi!ed t$at a! em,lo(ee %ailed to #e,o#t t$e #ea&$/ t$e! t$at em,lo(ee
"ill e #e%e##ed to <insert relevant 7ob title here> %o# <insert consequence here# such as
further consultation# reprimand action etc.>

Additional Policies for Use of Software
Te&$!olo'( Ha#d"a#e Poli&(
Otai!i!' So%t"a#e ,oli&(
Br i ng our !wn De"i ce Pol i cy
Policy Number: <insert unique number>
Policy Date: <insert date of policy>
At =5usiness Name> "e a&0!o"led'e t$e im,o#ta!&e o% moile te&$!olo'ies i! im,#o-i!'
usi!ess &ommu!i&atio! a!d ,#odu&ti-it() I! additio! to t$e i!&#eased use o% moile de-i&es/ sta%%
meme#s $a-e #eCuested t$e o,tio! o% &o!!e&ti!' t$ei# o"! moile de-i&es to =5usiness Name?s>
!et"o#0 a!d eCui,me!t) 3e e!&ou#a'e (ou to #ead t$is do&ume!t i! %ull a!d to a&t u,o! t$e
#e&omme!datio!s) T$is ,oli&( s$ould e #ead a!d &a##ied out ( all sta%%)
+Edit this policy so it suits the needs of your business.,
Purpose of the Policy
T$is ,oli&( ,#o-ides 'uideli!es %o# t$e use o% ,e#so!all( o"!ed !oteoo0s/ sma#t ,$o!es/ talets
a!d <insert other types of mobile devices> %o# usi!ess ,u#,oses) All sta%% "$o use o# a&&ess
=5usiness Name<s> te&$!olo'( eCui,me!t a!dDo# se#-i&es a#e ou!d ( t$e &o!ditio!s o% t$is
Poli&()
Procedures
urrent !obile de"ices appro"ed for business use
T$e %ollo"i!' ,e#so!all( o"!ed moile de-i&es a#e a,,#o-ed to e used %o# usi!ess ,u#,oses.
<insert type of approved mobile devices such as noteboo!s# smart phones# tablets#
iphones# removable media etc. >@
<insert type of approved mobile devices such as noteboo!s# smart phones# tablets#
iphones# removable media etc. >@
<insert type of approved mobile devices such as smart phones# tablets# iphones etc.
>
<insert type of approved mobile devices such as noteboo!s# smart phones# tablets#
iphones# removable media etc. >.
Registration of personal !obile de"ices for business use
Em,lo(ees "$e! usi!' ,e#so!al de-i&es %o# usi!ess use "ill #e'iste# t$e de-i&e "it$ <insert
relevant 7ob title or department here >.
<insert relevant 7ob title or department here > "ill #e&o#d t$e de-i&e a!d all a,,li&atio!s used (
t$e de-i&e)
EYou "ill !eed to &o!side# i% t$e usi!ess is to $a-e a!( &o!t#ol o-e# t$e a,,li&atio!s t$at a#e used
%o# usi!ess ,u#,oses a!dDo# used o! t$e ,e#so!al de-i&es)F
Pe#so!al moile de-i&es &a! o!l( e used %o# t$e %ollo"i!' usi!ess ,u#,oses.
<insert each type of approved use such as email access# business internet access#
business telephone calls etc.>@
<insert each type of approved use such as email access# business internet access#
business telephone calls etc.>@
<insert each type of approved use such as email access# business internet access#
business telephone calls etc.>.
Ea&$ em,lo(ee "$o utilises ,e#so!al moile de-i&es a'#ees.
Not to do"!load o# t#a!s%e# usi!ess o# ,e#so!al se!siti-e i!%o#matio! to t$e de-i&e)
Se!siti-e i!%o#matio! i!&ludes <insert types of business or personal information that
you consider sensitive to the business# for example intellectual property# other
employee details etc.>@
Not to use t$e #e'iste#ed moile de-i&e as t$e sole #e,osito#( %o# =5usiness Name<s>
i!%o#matio!) All usi!ess i!%o#matio! sto#ed o! moile de-i&es s$ould e a&0ed u,G
To ma0e e-e#( #easo!ale e%%o#t to e!su#e t$at =5usiness Name?s> i!%o#matio! is !ot
&om,#omised t$#ou'$ t$e use o% moile eCui,me!t i! a ,uli& ,la&e) S&#ee!s dis,la(i!'
se!siti-e o# &#iti&al i!%o#matio! s$ould !ot e see! ( u!aut$o#ised ,e#so!s a!d all
#e'iste#ed de-i&es s$ould e ,ass"o#d ,#ote&tedG
To mai!tai! t$e de-i&e "it$ <insert maintenance requirements of mobile devices such
as current operating software# current security software etc.>@
Not to s$a#e t$e de-i&e "it$ ot$e# i!di-iduals to ,#ote&t t$e usi!ess data a&&ess t$#ou'$
t$e de-i&eG
To aide ( =5usiness Name<s> i!te#!et ,oli&( %o# a,,#o,#iate use a!d a&&ess o% i!te#!et
sites et&)G
To !oti%( =5usiness Name> immediatel( i! t$e e-e!t o% loss o# t$e%t o% t$e #e'iste#ed
de-i&eG
Not to &o!!e&t US> memo#( sti&0s %#om a! u!t#usted o# u!0!o"! sou#&e to =5usiness
Name?s> eCui,me!t)
All em,lo(ees "$o $a-e a #e'iste#ed ,e#so!al moile de-i&e %o# usi!ess use a&0!o"led'e t$at
t$e usi!ess.
O"!s all i!telle&tual ,#o,e#t( &#eated o! t$e de-i&eG
Ca! a&&ess all data $eld o! t$e de-i&e/ i!&ludi!' ,e#so!al dataG
3ill #e'ula#l( a&0-u, data $eld o! t$e de-i&eG
3ill delete all data $eld o! t$e de-i&e i! t$e e-e!t o% loss o# t$e%t o% t$e de-i&eG
Has %i#st #i'$t to u( t$e de-i&e "$e#e t$e em,lo(ee "a!ts to sell t$e de-i&eG
3ill delete all data $eld o! t$e de-i&e u,o! te#mi!atio! o% t$e em,lo(ee) T$e te#mi!ated
em,lo(ee &a! #eCuest ,e#so!al data e #ei!stated %#om a&0 u, dataG
Has t$e #i'$t to de#e'iste# t$e de-i&e %o# usi!ess use at a!( time)
#eeping !obile de"ices secure
T$e %ollo"i!' must e ose#-ed "$e! $a!dli!' moile &om,uti!' de-i&es *su&$ as !oteoo0s a!d
iPads+.
Moile &om,ute# de-i&es must !e-e# e le%t u!atte!ded i! a ,uli& ,la&e/ o# i! a! u!lo&0ed
$ouse/ o# i! a moto# -e$i&le/ e-e! i% it is lo&0ed) 3$e#e-e# ,ossile t$e( s$ould e 0e,t o!
t$e ,e#so! o# se&u#el( lo&0ed a"a()
Cale lo&0i!' de-i&es s$ould also e &o!side#ed %o# use "it$ la,to, &om,ute#s i! ,uli&
,la&es/ e)') i! a semi!a# o# &o!%e#e!&e/ e-e! "$e! t$e la,to, is atte!dedG
Moile de-i&es s$ould e &a##ied as $a!d lu''a'e "$e! t#a-elli!' ( ai#&#a%t)
$%e!ptions
T$is ,oli&( is ma!dato#( u!less <insert relevant 7ob title or department here> '#a!ts a!
e1em,tio!) A!( #eCuests %o# e1em,tio!s %#om a!( o% t$ese di#e&ti-es/ s$ould e #e%e##ed to t$e
<insert relevant 7ob title or department here >.
Breach of this policy
A!( #ea&$ o% t$is ,oli&( "ill e #e%e##ed to <insert relevant 7ob title> "$o "ill #e-ie" t$e #ea&$
a!d dete#mi!e adeCuate &o!seCue!&es/ "$i&$ &a! i!&lude < insert consequences here such as
confiscation of the device and or termination of employment. >
Inde!nity
=5usiness Name> ea#s !o #es,o!siilit( "$atsoe-e# %o# a!( le'al a&tio! t$#eate!ed o# sta#ted
due to &o!du&t a!d a&ti-ities o% sta%% i! a&&essi!' o# usi!' t$ese #esou#&es o# %a&ilities) All sta%%
i!dem!i%( =5usiness Name> a'ai!st a!( a!d all dama'es/ &osts a!d e1,e!ses su%%e#ed (
=5usiness Name> a#isi!' out o% a!( u!la"%ul o# im,#o,e# &o!du&t a!d a&ti-it(/ a!d i! #es,e&t o%
a!( a&tio!/ settleme!t o# &om,#omise/ o# a!( statuto#( i!%#i!'eme!t) Le'al ,#ose&utio! %ollo"i!' a
#ea&$ o% t$ese &o!ditio!s ma( #esult i!de,e!de!tl( %#om a!( a&tio! ( =5usiness Name>.
Additional Policies for Business &obile Phone Use
Te&$!olo'( Ha#d"a#e Pu#&$asi!' Poli&(
Use o% So%t"a#e ,oli&(
Pu#&$asi!' Poli&(
I nf or mat i on Technol ogy Secur i t y Pol i cy
Policy Number: <insert unique number>
Policy Date: <insert date of policy>
This policy should be read and carried out by all staff. Edit this policy so it suits the needs of your
business.
Purpose of the Policy
T$is ,oli&( ,#o-ides 'uideli!es %o# t$e ,#ote&tio! a!d use o% i!%o#matio! te&$!olo'( assets a!d
#esou#&es "it$i! t$e usi!ess to e!su#e i!te'#it(/ &o!%ide!tialit( a!d a-ailailit( o% data a!d assets)
Procedures
Physical Security
Fo# all se#-e#s/ mai!%#ames a!d ot$e# !et"o#0 assets/ t$e a#ea must e se&u#ed "it$ adeCuate
-e!tilatio! a!d a,,#o,#iate a&&ess t$#ou'$ <insert relevant security measure here# such as
!eypad# loc! etc. >
It "ill e t$e #es,o!siilit( o% <insert relevant 7ob title here > to e!su#e t$at t$is #eCui#eme!t is
%ollo"ed at all times) A!( em,lo(ee e&omi!' a"a#e o% a #ea&$ to t$is se&u#it( #eCui#eme!t is
oli'ed to !oti%( <insert relevant 7ob title here > immediatel()
All se&u#it( a!d sa%et( o% all ,o#tale te&$!olo'(/ <insert relevant types here# such as laptop#
notepads# ipads etc > "ill e t$e #es,o!siilit( o% t$e em,lo(ee "$o $as ee! issued "it$ t$e
<insert relevant types here# such as laptop# notepads# Ipads# mobile phones etc. >. Ea&$
em,lo(ee is #eCui#ed to use <insert relevant types here# such as loc!s# passwords# etc. > a!d
to e!su#e t$e asset is 0e,t sa%el( at all times to ,#ote&t t$e se&u#it( o% t$e asset issued to t$em)
I! t$e e-e!t o% loss o# dama'e/ <insert relevant 7ob title here > "ill assess t$e se&u#it( measu#es
u!de#ta0e! to dete#mi!e i% t$e em,lo(ee "ill e #eCui#ed to #eimu#se t$e usi!ess %o# t$e loss o#
dama'e)
All <insert relevant types here# such as laptop# notepads# Ipads etc. > "$e! 0e,t at t$e o%%i&e
des0 is to e se&u#ed ( <insert relevant security measure here# such as !eypad# loc! etc. >
,#o-ided ( <insert relevant 7ob title here >
Infor!ation Security
All <insert relevant data to be bac!ed up here A either general such as sensitive# valuable# or
critical business data or provide a chec!list of all data to be bac!ed up > is to e a&0ed-u,)
It is t$e #es,o!siilit( o% <insert relevant 7ob title here > to e!su#e t$at data a&0-u,s a#e
&o!du&ted <insert frequency of bac!/ups here > a!d t$e a&0ed u, data is 0e,t <insert where
bac! up data is to be !ept e.g. cloud# offsite venue# employees home etc. here >
All te&$!olo'( t$at $as i!te#!et a&&ess must $a-e a!ti--i#us so%t"a#e i!stalled) It is t$e
#es,o!siilit( o% <insert relevant 7ob title here > to i!stall all a!ti--i#us so%t"a#e a!d e!su#e t$at
t$is so%t"a#e #emai!s u, to date o! all te&$!olo'( used ( t$e usi!ess)
All i!%o#matio! used "it$i! t$e usi!ess is to ad$e#e to t$e ,#i-a&( la"s a!d t$e usi!ess:s
&o!%ide!tialit( #eCui#eme!ts) A!( em,lo(ee #ea&$i!' t$is "ill e <insert relevant consequence
here>
'echnology Access
E-e#( em,lo(ee "ill e issued "it$ a u!iCue ide!ti%i&atio! &ode to a&&ess t$e usi!ess te&$!olo'(
a!d "ill e #eCui#ed to set a ,ass"o#d %o# a&&ess e-e#( <insert frequency here >
Ea&$ ,ass"o#d is to e <insert rules relating to password creation here# such as number of
alpha and numeric etc. > a!d is !ot to e s$a#ed "it$ a!( em,lo(ee "it$i! t$e usi!ess)
<insert relevant 7ob title here > is #es,o!sile %o# t$e issui!' o% t$e ide!ti%i&atio! &ode a!d i!itial
,ass"o#d %o# all em,lo(ees)
3$e#e a! em,lo(ee %o#'ets t$e ,ass"o#d o# is 9lo&0ed out: a%te# <insert a number here e.g. three
attempts >/ t$e! <insert relevant 7ob title here > is aut$o#ised to #eissue a !e" i!itial ,ass"o#d
t$at "ill e #eCui#ed to e &$a!'ed "$e! t$e em,lo(ee lo's i! usi!' t$e !e" i!itial ,ass"o#d)
T$e %ollo"i!' tale ,#o-ides t$e aut$o#isatio! o% a&&ess.
Te&$!olo'( H Ha#d"a#eD So%t"a#e Pe#so!s aut$o#ised %o# a&&ess
<insert name or type of technology here > <insert authorised persons or 7ob titles here >
<insert name or type of technology here > <insert authorised persons or 7ob titles here >
<insert name or type of technology here > <insert authorised persons or 7ob titles here >
<insert name or type of technology here > <insert authorised persons or 7ob titles here >
Em,lo(ees a#e o!l( aut$o#ised to use usi!ess &om,ute#s %o# ,e#so!al use <insert when this is
allowable and what they can personally use it for here# such as internet usage etc. >
Fo# i!te#!et a!d so&ial media usa'e/ #e%e# to t$e Huma! Resou#&es Ma!ual)
It is t$e #es,o!siilit( o% <insert relevant 7ob title here > to 0ee, all ,#o&edu#es %o# t$is ,oli&( u,
to date)
Additional Policies for Infor!ation 'echnology Security
Eme#'e!&( Ma!a'eme!t o% I!%o#matio! Te&$!olo'( Poli&(
I!%o#matio! Te&$!olo'( Admi!ist#atio! Poli&(
I nf or mat i on Technol ogy Admi ni st r at i on Pol i cy
Policy Number: <insert unique number>
Policy Date: <insert date of policy>
This policy should be read and carried out by all staff. Edit this policy so it suits the needs of your
business.
Purpose of the Policy
T$is ,oli&( ,#o-ides 'uideli!es %o# t$e admi!ist#atio! o% i!%o#matio! te&$!olo'( assets a!d
#esou#&es "it$i! t$e usi!ess)
Procedures
All so%t"a#e i!stalled a!d t$e li&e!&e i!%o#matio! must e #e'iste#ed o! t$e <insert where these
records are to be !ept>) It is t$e #es,o!siilit( o% <insert relevant 7ob title here > to e!su#e t$at
t$is #e'iste#ed is mai!tai!ed) T$e #e'iste# must #e&o#d t$e %ollo"i!' i!%o#matio!.
3$at so%t"a#e is i!stalled o! e-e#( ma&$i!eG
3$at li&e!&e a'#eeme!ts a#e i! ,la&e %o# ea&$ so%t"a#e ,a&0a'eG
Re!e"al dates i% a,,li&ale)
<insert relevant 7ob title here > is #es,o!sile %o# t$e mai!te!a!&e a!d ma!a'eme!t o% all
se#-i&e a'#eeme!ts %o# t$e usi!ess te&$!olo'() A!( se#-i&e #eCui#eme!ts must %i#st e a,,#o-ed
( <insert relevant 7ob title here >.
<insert relevant 7ob title here > is #es,o!sile %o# mai!tai!i!' adeCuate te&$!olo'( s,a#e ,a#ts
a!d ot$e# #eCui#eme!ts i!&ludi!' <insert specific technology requirements here# such as
toners# printing paper etc. >
A te&$!olo'( audit is to e &o!du&ted <insert frequency here e.g. annually > ( <insert
relevant 7ob title here > to e!su#e t$at all i!%o#matio! te&$!olo'( ,oli&ies a#e ei!' ad$e#ed to)
A!( u!s,e&i%ied te&$!olo'( admi!ist#atio! #eCui#eme!ts s$ould e di#e&ted to <insert relevant
7ob title here >
Additional Policies for Infor!ation 'echnology Ad!inistration
IT Se#-i&e A'#eeme!ts Poli&(
Pu#&$asi!' Poli&(
Websi t e Pol i cy
Policy Number: <insert unique number>
Policy Date: <insert date of policy>
This policy should be read and carried out by all staff. Edit this policy so it suits the needs of your
business.
Purpose of the Policy
T$is ,oli&( ,#o-ides 'uideli!es %o# t$e mai!te!a!&e o% all #ele-a!t te&$!olo'( issues #elated to t$e
usi!ess "esite)
Procedures
(ebsite Register
T$e "esite #e'iste# must #e&o#d t$e %ollo"i!' details.
, List o% domai! !ames #e'iste#ed to t$e usi!essG
, Dates o% #e!e"al %o# domai! !amesG
, List o% $osti!' se#-i&e ,#o-ide#sG
, E1,i#( dates o% $osti!'G
, <insert any other records to be !ept in relation to your business website here>.
T$e 0ee,i!' t$e #e'iste# u, to date "ill e t$e #es,o!siilit( o% <insert relevant 7ob title here >.
<insert relevant 7ob title here > "ill e #es,o!sile %o# a!( #e!e"al o% items listed i! t$e #e'iste#)
(ebsite ontent
All &o!te!t o! t$e usi!ess "esite is to e a&&u#ate/ a,,#o,#iate a!d &u##e!t) T$is "ill e t$e
#es,o!siilit( o% <insert relevant 7ob title here >
All &o!te!t o! t$e "esite must %ollo" <insert relevant business requirements here where
applicable# such as a business or content plan etc. >
T$e &o!te!t o% t$e "esite is to e #e-ie"ed <insert frequency here >
T$e %ollo"i!' ,e#so!s a#e aut$o#ised to ma0e &$a!'es to t$e usi!ess "esite.
, <insert relevant 7ob title here >
, <insert relevant 7ob title here >
, <insert relevant 7ob title here >
>asi& #a!di!' 'uideli!es must e %ollo"ed o! "esites to e!su#e a &o!siste!t a!d &o$esi-e
ima'e %o# t$e usi!ess)
All data &olle&ted %#om t$e "esite is to ad$e#e to t$e P#i-a&( A&t
Additional Policies for (ebsite Policy
I!%o#matio! Te&$!olo'( Se&u#it( Poli&(
Eme#'e!&( Ma!a'eme!t o% I!%o#matio! Te&$!olo'( ,oli&(
El ect r oni c Tr ansact i ons Pol i cy
Policy Number: <insert unique number>
Policy Date: <insert date of policy>
This policy should be read and carried out by all staff. Edit this policy so it suits the needs of your
business.
Purpose of the Policy
T$is ,oli&( ,#o-ides 'uideli!es %o# all ele&t#o!i& t#a!sa&tio!s u!de#ta0e! o! e$al% o% t$e usi!ess)
T$e oAe&ti-e o% t$is ,oli&( is to e!su#e t$at use o% ele&t#o!i& %u!ds t#a!s%e#s a!d #e&ei,ts a#e
sta#ted/ &a##ied out/ a!d a,,#o-ed i! a se&u#e ma!!e#)
Procedures
$lectronic )unds 'ransfer *$)'+
It is t$e ,oli&( o% <insert business name here > t$at all ,a(me!ts a!d #e&ei,ts s$ould e made (
EFT "$e#e a,,#o,#iate)
All EFT ,a(me!ts a!d #e&ei,ts must ad$e#e to all %i!a!&e ,oli&ies i! t$e Fi!a!&ial ,oli&ies a!d
,#o&edu#es ma!ual)
All EFT a##a!'eme!ts/ i!&ludi!' #e&ei,ts a!d ,a(me!ts must e sumitted to <insert relevant
department of the business here# e.g. finance department >.
EFT ,a(me!ts must $a-e t$e a,,#o,#iate aut$o#isatio! %o# ,a(me!t i! li!e "it$ t$e %i!a!&ial
t#a!sa&tio!s ,oli&( i! t$e Fi!a!&ial ,oli&ies a!d ,#o&edu#es ma!ual)
EFT ,a(me!ts must e a,,#o,#iatel( #e&o#ded i! li!e "it$ %i!a!&e ,oli&( i! t$e Fi!a!&ial ,oli&ies
a!d ,#o&edu#es ma!ual)
EFT ,a(me!ts o!&e aut$o#ised/ "ill e e!te#ed i!to t$e <insert title of payment system here
e.g. N%5 online system> ( <insert relevant 7ob title here >
EFT ,a(me!ts &a! o!l( e #eleased %o# ,a(me!t o!&e ,e!di!' ,a(me!ts $a-e ee! aut$o#ised (
<insert relevant 7ob title here >
$or good control over E$T payments, ensure that the persons authorising the payments and
ma#ing the payment are not the same person.
All EFT #e&ei,ts must e #e&o!&iled to &ustome# #e&o#ds <insert frequency here e.g. once a
wee! etc. >
3$e#e EFT #e&ei,t &a!!ot e allo&ated to &ustome# a&&ou!t/ it is #es,o!siilit( o% <insert relevant
7ob title here > to i!-esti'ate) I! t$e e-e!t t$at t$e &ustome# a&&ou!t &a!!ot e ide!ti%ied "it$i!
<insert length of time here# such as one month> t$e #e&ei,ted %u!ds must e <insert action
here such as allocated to suspense account or returned to source etc. >. <insert relevant
7ob title here > must aut$o#ise t$is t#a!sa&tio!)
It is t$e #es,o!siilit( o% <insert relevant 7ob title here > to a!!uall( #e-ie" EFT aut$o#isatio!s
%o# i!itial e!t#(/ alte#atio!s/ o# deletio! o% EFT #e&o#ds/ i!&ludi!' su,,lie# ,a(me!t #e&o#ds a!d
&ustome# #e&ei,t #e&o#ds)
$lectronic Purchases
All ele&t#o!i& ,u#&$ases ( a!( aut$o#ised em,lo(ee must ad$e#e to t$e ,u#&$asi!' ,oli&( i! t$e
Fi!a!&ial ,oli&ies a!d ,#o&edu#es ma!ual)
3$e#e a! ele&t#o!i& ,u#&$ase is ei!' &o!side#ed/ t$e ,e#so! aut$o#isi!' t$is t#a!sa&tio! must
e!su#e t$at t$e i!te#!et sales site is se&u#e a!d sa%e a!d e ale to demo!st#ate t$at t$is $as ee!
#e-ie"ed)
All ele&t#o!i& ,u#&$ases must e u!de#ta0e! usi!' usi!ess &#edit &a#ds o!l( a!d t$e#e%o#e ad$e#e
to t$e usi!ess &#edit &a#d ,oli&( i! t$e Fi!a!&ial ,oli&ies a!d ,#o&edu#es ma!ual)
Additional Policies for $lectronic 'ransactions Policy
I!%o#matio! Te&$!olo'( Se&u#it( Poli&(
Fi!a!&e Poli&ies
I T Ser vi ce Agr eement s Pol i cy
Policy Number: <insert unique number>
Policy Date: <insert date of policy>
This policy should be read and carried out by all staff. Edit this policy so it suits the needs of your
business.
Purpose of the Policy
T$is ,oli&( ,#o-ides 'uideli!es %o# all IT se#-i&e a'#eeme!ts e!te#ed i!to o! e$al% o% t$e usi!ess)
Procedures
T$e %ollo"i!' IT se#-i&e a'#eeme!ts &a! e e!te#ed i!to o! e$al% o% t$e usi!ess.
Insert the acceptable IT services for your business - the following dot points will assist.
P#o-isio! o% 'e!e#al IT se#-i&esG
P#o-isio! o% !et"o#0 $a#d"a#e a!d so%t"a#eG
Re,ai#s a!d mai!te!a!&e o% IT eCui,me!tG
P#o-isio! o% usi!ess so%t"a#eG
P#o-isio! o% moile ,$o!es a!d #ele-a!t ,la!sG
3esite desi'!/ mai!te!a!&e et&)
<insert type of I: service here>.
All IT se#-i&e a'#eeme!ts must e #e-ie"ed ( <insert who should review# recommended
lawyer or solicitor> e%o#e t$e a'#eeme!t is e!te#ed i!to) O!&e t$e a'#eeme!t $as ee!
#e-ie"ed a!d #e&omme!datio! %o# e1e&utio! #e&ei-ed/ t$e! t$e a'#eeme!t must e a,,#o-ed (
<insert relevant 7ob title here >
All IT se#-i&e a'#eeme!ts/ oli'atio!s a!d #e!e"als must e #e&o#ded <insert where the
agreements are to be recorded here >
3$e#e a! IT se#-i&e a'#eeme!t #e!e"al is #eCui#ed/ i! t$e e-e!t t$at t$e a'#eeme!t is
susta!tiall( u!&$a!'ed %#om t$e ,#e-ious a'#eeme!t/ t$e! t$is a'#eeme!t #e!e"al &a! e
aut$o#ised ( <insert relevant 7ob title here >.
3$e#e a! IT se#-i&e a'#eeme!t #e!e"al is #eCui#ed/ i! t$e e-e!t t$at t$e a'#eeme!t $as
susta!tiall( &$a!'ed %#om t$e ,#e-ious a'#eeme!t/ <insert who should review# recommended
lawyer or solicitor> e%o#e t$e #e!e"al is e!te#ed i!to) O!&e t$e a'#eeme!t $as ee! #e-ie"ed
a!d #e&omme!datio! %o# e1e&utio! #e&ei-ed/ t$e! t$e a'#eeme!t must e a,,#o-ed ( <insert
relevant 7ob title here >
I! t$e e-e!t t$at t$e#e is a dis,ute to t$e ,#o-isio! o% IT se#-i&es &o-e#ed ( a! IT se#-i&e
a'#eeme!t/ it must e #e%e##ed to <insert relevant 7ob title here > "$o "ill e #es,o!sile %o# t$e
settleme!t o% su&$ dis,ute)
Additional Policies for I' Ser"ices Policy
Te&$!olo'( Ha#d"a#e Pu#&$asi!' Poli&(
Emer gency Management of I nf or mat i on Technol ogy
Policy Number: <insert unique number>
Policy Date: <insert date of policy>
This policy should be read and carried out by all staff. Edit this policy so it suits the needs of your
business.
Purpose of the Policy
T$is ,oli&( ,#o-ides 'uideli!es %o# eme#'e!&( ma!a'eme!t o% all i!%o#matio! te&$!olo'( "it$i! t$e
usi!ess)
Procedures
I' Hardware )ailure
3$e#e t$e#e is %ailu#e o% a!( o% t$e usi!ess:s $a#d"a#e/ t$is must e #e%e##ed to <insert relevant
7ob title here > immediatel()
It is t$e #es,o!siilit( o% <insert relevant 7ob title here > to <insert relevant actions that should
be underta!en here > i! t$e e-e!t o% IT $a#d"a#e %ailu#e)
It is t$e #es,o!siilit( o% <insert relevant 7ob title here > to u!de#ta0e tests o! ,la!!ed
eme#'e!&( ,#o&edu#es <insert frequency here# recommended quarterly > to e!su#e t$at all
,la!!ed eme#'e!&( ,#o&edu#es a#e a,,#o,#iate a!d mi!imise dis#u,tio! to usi!ess o,e#atio!s)
Point of Sale ,isruptions
I! t$e e-e!t t$at ,oi!t o% sale *POS+ s(stem is dis#u,ted/ t$e %ollo"i!' a&tio!s must e immediatel(
u!de#ta0e!.
Insert the actions re.uired for your business - the following dot points will assist.
POS ,#o-ide# to e !oti%iedG
<insert relevant 7ob title here > must e !oti%ied immediatel(G
All POS t#a!sa&tio!s to e ta0e! usi!' t$e ma!ual ma&$i!e lo&ated elo" t$e &ou!te#G
Fo# all ma!ual POS t#a!sa&tio!s/ &ustome# si'!atu#es must e -e#i%iedG
<insert other relevant emergency actions here >@
<insert other relevant emergency actions here >.
-irus or other security breach
I! t$e e-e!t t$at t$e usi!ess:s i!%o#matio! te&$!olo'( is &om,#omised ( so%t"a#e -i#us o#
<insert other relevant possible security breaches here > su&$ #ea&$es a#e to e #e,o#ted to
<insert relevant 7ob title here > immediatel()
<insert relevant 7ob title here > is #es,o!sile %o# e!su#i!' t$at a!( se&u#it( #ea&$ is dealt "it$
"it$i! <insert relevant timeframe here > to mi!imise dis#u,tio! to usi!ess o,e#atio!s)
(ebsite ,isruption
I! t$e e-e!t t$at usi!ess "esite is dis#u,ted/ t$e %ollo"i!' a&tio!s must e immediatel(
u!de#ta0e!.
Insert the actions re.uired for your business - the following dot points will assist.
3esite $ost to e !oti%iedG
<insert relevant 7ob title here > must e !oti%ied immediatel(G
<insert other relevant emergency actions here >@
<insert other relevant emergency actions here >.