SharePoint Security Monitoring Policy Template
This file was edited for correctness by Edgardo Gonzalez of PSLR.
| Introduction – SharePoint Server Monitoring Policy | Security Monitoring is a method used to confirm that the SharePoint security practices and controls in place are being adhered to and are effective for the SharePoint environment.
Monitoring consists of activities such as the review of:
|
| Purpose | The purpose of the SharePoint Security Monitoring Policy is to ensure that SharePoint security controls are in place, are effective, and are not being bypassed. One of the benefits of SharePoint security monitoring is the early identification of wrongdoing or entrance of new security vulnerabilities. This early identification can help to block the wrongdoing or vulnerability before harm can be done, or at least to minimize the potential impact. Other benefits include Audit Compliance, Service Level Monitoring, Performance Measuring, Limiting Liability, and Capacity Planning. |
| Audience | The [Organization] Server Monitoring Policy applies to all individuals that are responsible for the installation of new SharePoint property, the operations of existing SharePoint property, and individuals charged with SharePoint security. |
| SharePoint Server Monitoring Policy | Automated SharePoint security tools will provide real time notification of detected wrongdoing and vulnerability exploitation. Where possible a security baseline will be developed and the tools will report exceptions. These tools will be deployed to monitor:
The following files will be checked for signs of wrongdoing and SharePoint vulnerability exploitation at a frequency determined by risk:
The following checks will be performed at least annually by [Organization] assigned individuals:
Any security issues discovered will be reported to the [Organization] appropriate management for follow-up investigation. |
| SharePoint Server Monitoring Policy Supporting Information |
|
| Disciplinary Actions | Violation of this policy may result in disciplinary action which may include termination for employees and temporaries; a termination of employment relations in the case of contractors or consultants; dismissal for interns and volunteers; or suspension or expulsion in the case of a student. Additionally, individuals are subject to loss of [Organization] SharePoint access privileges, civil, and criminal prosecution. |
| Compliance / Regulation Contributed to by this Policy |
|
No Comments »
No comments yet.
RSS feed for comments on this post. TrackBack URL























Articles & Research
SharePoint Architecture
Personal/Off-Topic
Article Or Research Filed Under 
