Title Page
-
Conducted on
-
Prepared by
-
Location
-
To view our Loss Prevention Standard that supports this checklist, please view the following link : https://broker.aviva.co.uk/documents/view/aviva_cyber_security_homeworking_coronavirus_lps.pdf
Cyber Security, Homeworking and Coronavirus
-
1. Are system passwords required to include a combination of capitals, lower case letters, numbers and symbols with minimum of 8 characters?
-
2. Do you require Multi-factor authentication to access systems with confidential/sensitive information?
-
3. Do sytem users have only access to the systems/tools that is necessary to do their job?
-
4. Do you use a Virtual Private Network where users are required to access company systems remotely or away form their place of work?
-
5. Do you restrict or prevent access to company systems using an employee's own devices?
-
6. Have all employees sufficient access to a company supplied standard build device which features the necessary security measures and access restrictions to protect the business data and information?
-
7. Are all anti-virus and software updates automatically installed for all devices?
-
8. Are employees provided with adequate reference guides to enable them to access company systems when required to work remotely?
-
9. Are all employees trained to recognise phishing emails?
-
10. Is there any policy that no removable media is to be used on the company provided devices?
-
11. Are ports on the company provided devices disabled by the IT to protect against introducing virus using SD cards/USB memory sticks?
-
12. Are the employee instructed/informed about the things to keep in mind when using company-issued devices on public places? e.g Security, Data, Wifi
-
13. Is all commercially sensitive data encrypted?
-
14. Have employees been instructed briefed on what action to take if they are involved in any Cyber Security Incident? (e.g. lost or stolen device, compromised passwords, clicking an unsecure attachment or any other suspicious activity)
Completion
-
Additional Comments
-
Completed by: (Name and Signature)