[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"detail-sidebar-cat-1-en-105":3,"doc-seo-170725-105":53,"doc-detail-170725-en":127},{"code":4,"msg":5,"data":6},0,"success",[7,14,19,24,29,34,39,44,49],{"id":8,"doc_module":9,"doc_module_name":10,"category_name":11,"show_sort_weight":12,"slug":13},11,1,"Template","Presentations",90,"presentations",{"id":15,"doc_module":9,"doc_module_name":10,"category_name":16,"show_sort_weight":17,"slug":18},12,"Resumes",80,"resumes",{"id":20,"doc_module":9,"doc_module_name":10,"category_name":21,"show_sort_weight":22,"slug":23},14,"Invoices",70,"invoices",{"id":25,"doc_module":9,"doc_module_name":10,"category_name":26,"show_sort_weight":27,"slug":28},15,"Posters",60,"posters",{"id":30,"doc_module":9,"doc_module_name":10,"category_name":31,"show_sort_weight":32,"slug":33},16,"Social Media",50,"social-media",{"id":35,"doc_module":9,"doc_module_name":10,"category_name":36,"show_sort_weight":37,"slug":38},17,"Forms",40,"forms",{"id":40,"doc_module":9,"doc_module_name":10,"category_name":41,"show_sort_weight":42,"slug":43},18,"Letters",30,"letters",{"id":45,"doc_module":9,"doc_module_name":10,"category_name":46,"show_sort_weight":47,"slug":48},21,"Paper Templates",5,"papers-templates",{"id":50,"doc_module":9,"doc_module_name":10,"category_name":51,"show_sort_weight":4,"slug":52},158,"General","general-158",{"code":4,"msg":54,"data":55},"ok",{"site_id":56,"language":57,"slug":58,"title":59,"keywords":60,"description":61,"schema_data":62,"social_meta":120,"head_meta":122,"extra_data":124,"updated_unix":126},105,"en","information-security-rules","Information Security rules","","Company-wide information security rules define obligations for every staff member and any personnel working in or for the organisation. The rules cover confidentiality, proper handling and classification of information, careful use of company-issued devices, and immediate reporting of security incidents such as lost devices or suspected hacks. Additional guidance addresses secure use of mobile devices, keeping software updated, safe password practices, encryption requirements, secure working from home, and secure return or disposal of confidential assets when employment ends.",{"@graph":63,"@context":119},[64,80,102],{"@type":65,"itemListElement":66},"BreadcrumbList",[67,71,74,77],{"item":68,"name":69,"@type":70,"position":9},"https://docshare.wps.com","Home","ListItem",{"item":72,"name":10,"@type":70,"position":73},"https://docshare.wps.com/template/",2,{"item":75,"name":51,"@type":70,"position":76},"https://docshare.wps.com/template/general/",3,{"item":78,"name":59,"@type":70,"position":79},"https://docshare.wps.com/template/information-security-rules/170725/",4,{"url":78,"name":59,"@type":81,"image":82,"author":87,"headline":59,"publisher":90,"fileFormat":93,"inLanguage":57,"description":61,"dateModified":94,"datePublished":95,"encodingFormat":93,"isAccessibleForFree":96,"interactionStatistic":97},"DigitalDocument",{"url":83,"@type":84,"width":85,"height":86},"https://docshare.wps.com/thumbnails/information-security-rules/170725.png","ImageObject",442,249,{"name":88,"@type":89},"Ava Thompson","Person",{"url":68,"name":91,"@type":92},"DocShare","Organization","application/vnd.openxmlformats-officedocument.wordprocessingml.document","2026-09-26","2026-09-01",true,{"@type":98,"interactionType":99,"userInteractionCount":101},"InteractionCounter",{"@type":100},"ViewAction",6,{"@type":103,"mainEntity":104},"FAQPage",[105,111,115],{"name":106,"@type":107,"acceptedAnswer":108},"Who must follow the information security rules?","Question",{"text":109,"@type":110},"Anyone who works in or for the organisation, including permanent staff, interns and temporary staff, and any supplier or independent professionals with access to premises or information.","Answer",{"name":112,"@type":107,"acceptedAnswer":113},"What are the general obligations regarding sensitive information?",{"text":114,"@type":110},"Staff must not disclose sensitive information to outsiders or publish it unless their role and the information’s classification allow it. They must take due care with all data, especially personal data.",{"name":116,"@type":107,"acceptedAnswer":117},"What should be done if a device is lost, stolen, or suspected to be compromised?",{"text":118,"@type":110},"Report the incident immediately to the Information security officer. If a device seems compromised, turn it off and hand it over to IT staff.","https://schema.org",{"og:url":78,"og:type":121,"og:title":59,"og:site_name":91,"og:description":61},"article",{"robots":123,"canonical":78},"index,follow",{"doc_id":125,"site_id":56},170725,1788274580,{"code":4,"msg":5,"data":128},{"doc_id":125,"user_id":129,"nickname":88,"user_avatar":130,"doc_module":9,"category_id":50,"category_name":51,"doc_title":59,"doc_description":61,"doc_content":131,"file_id":132,"file_url":133,"file_type":134,"file_size":135,"view_count":101,"is_deleted":4,"is_public":9,"is_downloadable":9,"audit_status":9,"page_count":47,"language":136,"language_code":57,"site_id":56,"html_lang":57,"table_of_contents":137,"faqs":138,"seo_title":139,"seo_description":61,"update_tm":126,"read_time":73},1649267921044,"https://us-avatar.wpscdn.com/avatar/1800007509477c92dfb?_k=1786009248482753345","Note: this is an example document that shows what rules have to be communicated to all staff for information security. The name of the document can be “Acceptable use policy”, “Personnel handbook” or any other name that suits the organisation. Make sure this document contains all InfoSec-related rules staff should follow, and there are no conflicts with other ISMS documentation. (e.g. Procedures).\nThis template was created by the people of ICT Institute. You can find the latest version and other templates here: \u0013 HYPERLINK \"https://ictinstitute.nl/free-templates/\" \u0014https://ictinstitute.nl/free-templates/\u0015\nYou can use this template freely under the Create Commons Attribution license\n\u0013 HYPERLINK \"https://creativecommons.org/licenses/by/4.0/\" \u0014https://creativecommons.org/licenses/by/4.0/\u0015\nYou can do the following with the templates:\nShare. You can share the templates and any documents made with these templates freely, with any one that you want to share it with.\nAdapt. You can make new documents based on the templates, make changes, add elements or delete elements as much as you want. You can even do this in commercial organisations of for commercial purposes.\nIf you are a customer, you do not have to mention ICT Institute anywhere. If you are not a customer, you must keep the text \"create by the people of ICT Institute\" somewhere\nNote that the use of these templates is of course at your own risk. Note also that the ISO standards are copyrighted. You must buy the standard from NEN or ISO before using it\nInformation Security rules\nAnyone with access to information in our organisation has an important role in keeping information secure. It does not matter if work in IT or in other parts of the business: the rules apply to all staff. The IS-rules apply to any staff working in or for our organisation. This includes:\nPermanent staff.\nInterns and temporary staff.\n[optional]Independent professionals or supplier staff with access to our premises or information.\nYou should receive a copy of this document with your employment contract or in your first day at work.\nThe scope of this document is the broad use of information and includes hardware, software and the information itself. You should follow the rules for all locations and devices you use to do your work.\nFailure to follow these rules will lead to disciplinary measures such as formal warnings, suspension or being fired. More details can be obtained at HR.\nGeneral obligation for information security\nAnyone working in this organisation is obligated to keep information secure.\nYou cannot disclose sensitive information to outsiders or publish information unless this is part of your role and the classification of the information allows it.\nYou are obligated to know and respect all information security rules.\nYou are obligated to take due care with any data, especially with personal data.\nYou are obligated to take due care with company issued devices.\nYou are obligated to mention security incidents immediately to …. This includes loss of a device, suspicion of a hack or any unworkable situation.\nThese rules have been created by the management as part of the overall information security policy. Management is fully committed to information security, and is available for any questions about these rules. You can ask questions to:\n[CEO / CFO / CIO]\nEmail address:\nPhone number (general questions):\nPhone number (for emergencies such as incidents):\nInfosec team members:\nClassification of information (A5.9, A5.12)\nCertain information is considered to be sensitive due to e.g. monetary or legal value, and has to remain confidential while other information is less crucial. [ORGANIZATION] should have a policy in place on how to handle classified information. The accountability to classify information assets lies with its owner. To distinguish between the importance of different classified assets, the following classification of assets is made:\nPublic\nInternal use\nConfidential\nVery confidential\nIf you ","cbCaifkIPj1No6D8","https://ap.wps.com/l/cbCaifkIPj1No6D8","docx",36889,"English","# General obligation for information security\n## Classification of information and labeling\n## Use of phones, tablets and mobile devices\n## Working from home\n## End of contract or employment","[{\"question\":\"Who must follow the information security rules?\",\"answer\":\"Anyone who works in or for the organisation, including permanent staff, interns and temporary staff, and any supplier or independent professionals with access to premises or information.\"},{\"question\":\"What are the general obligations regarding sensitive information?\",\"answer\":\"Staff must not disclose sensitive information to outsiders or publish it unless their role and the information’s classification allow it. They must take due care with all data, especially personal data.\"},{\"question\":\"What should be done if a device is lost, stolen, or suspected to be compromised?\",\"answer\":\"Report the incident immediately to the Information security officer. If a device seems compromised, turn it off and hand it over to IT staff.\"}]","Information Security rules | DOCX"]