Article 45 – Information Security
References
-
(1) CIV 1798.24(t).
-
(2) DOMDepartment Operations Manual, Chapter 1, Article 12, Telephone, Facsimiles, and Cellular Type Telephones.
-
(3) DOMDepartment Operations Manual, Chapter 1, Article 23, Records Management.
-
(4) DOMDepartment Operations Manual, Chapter 3, Article 22, Employee Discipline.
-
(5) DOMDepartment Operations Manual, Chapter 4, Article 46, Risk Management Policy.
-
(6) DOMDepartment Operations Manual, Chapter 4, Article 50, Change and Configuration Management Policy.
-
(7) DOMDepartment Operations Manual, Chapter 4, Article 51, Endpoint Security.
-
(8) DOMDepartment Operations Manual, Chapter 4, Article 70, Security Variance Policy.
-
(9) DOMDepartment Operations Manual, Chapter 5, Article 22, §§ 52070.22-52070.24.
-
(10) FIPS 140-2, 140-3, 197.
-
(11) GCGovernment Code, §§ 1222, 3300 et seq, 7920.000 et seq, 7921.000-7921.010, 7927.700, 11546.1, and 11549.3.
-
(12) NIST SP 800-53: Access Control (AC); Planning (PL); Program Management (PM);
System and Information Integrity (SI); System and Communications Protection (SC);
Supply Chain Risk Management (SR). -
(13) PCPenal Code, §§ 502, 2702, 11075-11081, and 13100-13104.
-
(14) SAMState Administrative Manual, §§ 1600-1624.1, 4989-4989.8, and 5300-5365.3.
-
(15) SIMM 5305-A, Information Security Program Standard.
-
(16) The California Public Records Act, GCGovernment Code § 7923.600(a).
-
(17) Title 15, §§ 3041.3(c)(1) and 3321.