login
|
join
professional documents
home
Profile
Upload
docsters
Blogs
Upload
all docs
legal
business
financial
technology
educational
creative
BUZZ
hassanmaher
about me
contact me
Hassan Maher
IT Governance
CMDB Manager
Al Rajhi Bank
alrajhibank.com.sa
An accomplished Information Services professional with extensive experience in bringing cutting-edge technology to corporate clients. Proven ability to conduct accurate needs analysis, Root Cause Analysis, solve problems, assess t...
>> read more about me
In order to send a message you need to be logged in.
Security Requirements
Categories
technology
>
applications
Tags
Security Requirements
be first to review
ABC-TT-01 VersionV 1.0 PageV 1V2 Confidential V All rights reserved. Passing on and copying of this document, use and communication of its contents not permitted without written authorization. Security Requirements The use of security mechanisms is critical for the reduction of possible falsification or theft of information. To ensure the security of these modules Vfocusing here on the application, application equipment and software needsV and its information, the following shall be providedV Require password entry to gain initial access to the system. Require password entry immediately before non-standard high-level activity. Not display passwords on the screen during entry. Allow individual user access rights to be tailored to specific tasks or task groups. Validate passwords to prevent use of trivial or insecure passwords. Support an automatic log-off after a certain time period, e.g. 2 minutes or system administrator configurable time period. Enforce password expiry after a specified time span, and prevent reuus of passwords. Store passwords in an encrypted form, separately from the main database. Disable or disconnect terminals which have been inactive for a specified period of time. Provide the necessary technical specifications for recognition of passwords, digital signatures, fingerprints and other personal recognition methods to prove the integrity and authenticity of data and protect against forgery. A log file shall be kept with the usersV actions recorded by module functionality. All users of a module shall have a unique username and password. The users shall be forced to change their password on regular basis Ve.g. every V0 daysV. Reporting and registering in a log file any attempts for breaching access codes. Each module shall provide a maximum number of login attempts in case of a wrong password. When that maximum number is reached the user account will be temporarily disabled until the problem is located and the proper measures are taken. Include the necessary mechanisms for safeguarding the continuous availability, confidentiality and integrity of the data stored in the system. Ensure that before connecting to the system the user's identity, authority level and security profile are verified. ABC-TT-01 VersionV 1.0 PageV 2V2 Confidential V All rights reserved. Passing on and copying of this document, use and communication of its contents not permitted without written authorization. Be capable of preventing the use of unique identification numbers for any other purpose other than the provision of healthcare services. Be able to detect and report any breaches of security. Allow the application of consent by multiple authorized users for the opening and processing of certain files containing identification fields and sensitive personal data that can possibly be matched with external files. Support a single password to access different modules and levels of data. Vse audit trails to track all activity of data editing and editing persons at all times in order to minimize the possibility of undetectable alteration of data. Support security mechanisms and a list of European and international standards in every module
Public Domain
views:
471
downloads:
67
rating:
7(1)
reviews:
0
posted:
12/1/2007
language:
English
related docs
other docs by this user
search analytics
search term
page on Google
times searched
DEA Security Requirements for Personnel Security
shared by:
DOJ
on:
6/4/2008
|
views:
29
|
downloads:
1
|
comments:
0
|
category:
legal
Security Requirements FY ppt - Security
shared by:
FHA
on:
6/19/2008
|
views:
26
|
downloads:
3
|
comments:
0
|
category:
legal
Sample of Acceptable Security Requirements Documents
shared by:
SSA
on:
6/19/2008
|
views:
18
|
downloads:
5
|
comments:
0
|
category:
legal
Social Security Registration Requirements
shared by:
ronaldmiller
on:
5/13/2008
|
views:
69
|
downloads:
0
|
comments:
0
|
category:
legal
Safeguards and Security Requirements for Work at Y
shared by:
EIA
on:
5/30/2008
|
views:
16
|
downloads:
1
|
comments:
0
|
category:
legal
PHYSICAL INVENTORY REQUIREMENTS FOR SECURITY ITEMS
shared by:
CCO
on:
6/18/2008
|
views:
19
|
downloads:
1
|
comments:
0
|
category:
legal
State Security Freeze Requirements and Fees
shared by:
anonymous
on:
11/7/2007
|
views:
245
|
downloads:
5
|
comments:
0
|
category:
financial
filemaker security requirements white paper
shared by:
tlindeman
on:
4/4/2008
|
views:
197
|
downloads:
1
|
comments:
0
|
category:
technology
Meeting the PCI Application Security Requirements
shared by:
LisaB1982
on:
4/6/2008
|
views:
110
|
downloads:
5
|
comments:
0
|
category:
technology
DEA Security Requirements for Personnel Security - Acquisitions & Contracts
shared by:
DOJ
on:
6/17/2008
|
views:
9
|
downloads:
0
|
comments:
0
|
category:
legal
Security Requirements FY ppt - Security
shared by:
TDdocs
on:
6/26/2008
|
views:
17
|
downloads:
1
|
comments:
0
|
category:
legal
IT Security-Risk Mitigation Service Level Requirements Worksheet
shared by:
user002
on:
2/5/2008
|
views:
130
|
downloads:
22
|
comments:
0
|
category:
business
Bachelor of Science in Security Management - Degree Requirements for Port Security Specialists
shared by:
CoastGuard
on:
5/30/2008
|
views:
8
|
downloads:
0
|
comments:
0
|
category:
legal
Undergraduate Certificate in Homeland Security - Degree Requirements for Port Security Specialists
shared by:
CoastGuard
on:
5/30/2008
|
views:
5
|
downloads:
0
|
comments:
0
|
category:
legal
Professional Certificate in Homeland Security - Degree Requirements for Port Security Specialists
shared by:
CoastGuard
on:
5/30/2008
|
views:
4
|
downloads:
0
|
comments:
0
|
category:
legal
Evaluation Criteria
shared by:
hassanmaher
on:
12/1/2007
|
views:
602
|
downloads:
69
|
comments:
0
|
category:
business