Security Policies, Standards, and Procedures
100 - State Information Security Program Policy - Effective 01/26/2023
01/26/2023
•
.pdf
S.2.03.01 - State Security Committee Charter - Effective 12/31/2020
12/30/2020
•
.pdf
S.2.05.01 - Security Evaluations - Effective 12/31/2020
12/30/2020
•
.pdf
S.3.02.01 - Data Sensitivity - Effective 12/31/2020
12/30/2020
•
.pdf
S.3.02.02 - Information Security Policy Statement - Effective 12/31/2020
12/30/2020
•
.pdf
S.3.03.01 - ISO Roles & Responsibilities - Effective 12/31/2020
12/30/2020
•
.pdf
S.3.04.01 J Personnel Security (pdf) - Effective 09/13/2024
01/02/2025
•
.pdf
S.3.04.01 J Personnel Security (docx) - Effective 09/13/2024
01/02/2025
•
.docx
S.3.04.03 Social Media for Business Use - Effective 05/09/2024
05/14/2025
•
.pdf
S.3.04.03 1F Social Media Exception Request Form - Effective 04/04/2024
03/12/2026
•
.pdf
S.3.04.04 1F Acceptable Use Agreement 4.16.24 - Effective Date 04/16/2024
05/14/2025
•
.docx
S.3.07.01 - Information Security Risk Analysis - Effective 12/31/2020
12/30/2020
•
.pdf
S.3.09.01 IT Contingency Planning - Effective 12/31/2020
12/30/2020
•
.pdf
S.4.02.02 - Mobile and Non-State Device Security Management - Effective 12/31/2020
12/30/2020
•
.pdf
S.4.02.03 - Multi-Function Devices (MFDs) - Effective 07/13/2022
07/26/2022
•
.pdf
S.4.03.01 - Electronic Media Security - Effective 12/31/2020
12/30/2020
•
.pdf
S.4.07.01 - Security for System Development - Effective 12/31/2020
12/30/2020
•
.pdf
S.5.01.01 F User Identification and Authentication (Passwords) - Effective 05/08/2025
05/14/2025
•
.pdf
S.5.01.01 - User Identification and Authentication (Passwords)
12/30/2020
•
.pdf
S.5.02.02 - Access Controls and Audit Trails - Effective 12/31/2020
12/30/2020
•
.pdf
S.5.04.01 Border Security - Effective 07/13/2022
07/26/2022
•
.pdf
S.5.04.03 - Remote Access - Effective 1, 2021
09/07/2021
•
.pdf
S.5.04.04 - Data Security Architecture - Effective 12/31/2020
12/30/2020
•
.pdf
S.5.06.01 H Cloud Services - Effective 05/09/2025
07/31/2025
•
.pdf
S.5.06.01 1F - Cloud Services Assessment Worksheet - Effective 10/20/2021
12/01/2021
•
.xlsx
S.5.06.02 - Domain Name System (DNS) - Effective 01/9/2023
01/26/2023
•
.pdf
S.5.08.01 - Wireless Networks - Effective 12/31/2020
12/30/2020
•
.pdf
S. 6.02.01 - Software Inventory and Control - Effective 12/31/2020
12/30/2020
•
.pdf
S.6.02.07 - Technology Bans - Effective 04/06/2023
04/06/2023
•
.pdf
S.6.02.07 - Technology Bans - Effective 04/06/2023
04/06/2023
•
.pdf
S.6.02.07A rev D Banned Technology List - Effective 01/30/2025
01/31/2025
•
.pdf
S.6.03.01 - Software Patch Management - Effective 12/31/2020
12/30/2020
•
.pdf
S.6.03.02 Vulnerability Management - Effective 09/01/2021
09/07/2021
•
.pdf
S.6.05.01 Secure Software Configuration - Effective 12/31/2020
12/30/2020
•
.pdf
S.6.08.01 Malware Defenses - Effective 12/31/2020
12/30/2020
•
.pdf
S.6.10.01 Backup and Recovery Capabilities - Effective 12/31/2020
12/30/2020
•
.pdf
S.6.13.01 Data Protection - Effective 12/31/2020
12/30/2020
•
.pdf
S.6.15.01 Wireless Access Control - Effective 12/31/2020
12/30/2020
•
.pdf
S.6.16.01 Account Monitoring and Control - Effective 12/31/2020
12/30/2020
•
.pdf