Acceptable Use Policy
What is Acceptable Use Policy?
A document that outlines the rules and guidelines for using an organization's IT resources, defining permitted and prohibited activities for users.
Frameworks that govern acceptable use policy
What the standards actually require on acceptable use policy
Requirements naming acceptable use policy across 6 standards, quoted from the control text.
Implement policies specifying proper functions, manner of performance, and physical attributes for workstations accessing ePHI. NIST recommends acceptable use policy and remote worker provisions.
164.310(b) · Workstation Use (Standard) →POPL 5741-1981 plus Data Security Regulations 2017 plus Section 17F + Section 23E address outsourcing + direct marketing + personnel security.
IsraelPPL-Outsourcing-DataHolder-DirectMarketing-Section17F-EmployeeTraining-Vendor-DPA-Subcontractor · Israel POPL Outsourcing + Data Holder + Section 17F Direct Marketing + Section 23E Direct Mailing Compliance + Employee Training and Vetting + Vendor DPA + Subcontractor Flow-Down →Standard 7 per Section 35 + the Schedule of the Jamaica Data Protection Act 2020: Personal data shall be processed in a manner that ensures appropriate security including protection against unauthorised or unlawful processing + accidental loss + destruction or...
JM-DPA2020-Standard7-Security-Sec35-Appropriate-Technical-Organisational-Confidentiality-Integrity-Availability-Resilience · Jamaica DPA 2020 Standard 7 - Security + Section 35 + Appropriate Technical and Organisational Measures + Confidentiality + Integrity + Availability + Resilience + Encryption + Pseudonymisation + Risk-Based Security →Implement Technology Risk Governance + Technology Risk Management Framework + Information Asset Management per MAS TRM Chapters 2 + 3 + 5.
MAS-TRM-Governance-Chapters-2-3-Board-Senior-Management-Risk-Framework-Information-Asset-Management · MAS TRM Governance + Chapters 2-3 + Board + Senior Management + Risk Framework + Information Asset Management →Implement policies specifying proper functions, manner of performance, and physical attributes for workstations accessing ePHI. NIST recommends acceptable use policy and remote worker provisions.
164.310(b) · Workstation Use (Standard) →Per Philippines RA 10175 Sections 4(a) and Cybercrime Offences: prevent + cooperate in investigation of cybercrime offences. Requirements include (a) understand Illegal Access (Section 4(a)(1)) - unauthorised access to computer systems + (b) Illegal Intercepti...
PHILCC-1 · Computer Crime Offences (Illegal Access, Interference, Misuse of Devices) →Questions people ask about acceptable use policy
What is Acceptable Use Policy?
Why is Acceptable Use Policy important for compliance?
Which compliance frameworks address Acceptable Use Policy?
Where can I learn more about Acceptable Use Policy?
See how Acceptable Use Policy applies across compliance frameworks
Our platform maps 686 frameworks with 311K cross-framework control mappings. Explore how this concept is addressed across standards.