The IT Law Wiki
Advertisement

Definition

A policy is

a formal document describing roles, responsibilities, standards, and enforcement mechanisms with regard to a particular issue.[1]
[t]he principles and values that guide the performance of a duty. A policy is not a statement of what must be done in a particular situation. Rather, it is a statement of guiding principles that should be followed in activities that are directed toward the attainment of goals.[2]

References

  1. Information Security Guide 2 - Glossary.
  2. U.S. Department of Justice, Minimum Criminal Intelligence Training Standards for Law Enforcement and Other Criminal Justice Agencies in the United States (Ver. 2) (Oct. 2007) (full-text).
Advertisement