guide to creating a data security plan

8
Data Security Plan Guide to Creating a

Upload: others

Post on 02-Feb-2022

2 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: Guide to Creating a Data Security Plan

Data Security PlanGuide to Creating a

Page 2: Guide to Creating a Data Security Plan

2

It is your turn to create a Data Security Plan for your practice. In the guide below,

you will find example outlines to reference along the way. Please keep in mind that

information provided in this eBook is for exemplary purposes only & is not intended

to be a complete representation on the types of information tax professionals must

have when completing their Data Security Plan.

This guide is general in nature, may not apply to your practice’s circumstance(s)

& should not be construed as legal advice. Please refer to the IRS or consult your

attorney for guidance.

Guide to Creating a Data Security Plan

Page 3: Guide to Creating a Data Security Plan

3

OWNER/MANAGER CONTACT INFORMATION

SYSTEM/SOFTWARE USERS

First & Last Name

Job Title

Home Address

Primary Phone Number

Email Address

First & Last Name

Job Title

Home Address

Primary Phone Number

Email Address

Employee First Name

Employees Last Name Job Title What Access Do They Have

Within the System?

Page 4: Guide to Creating a Data Security Plan

4

IN-DEPTH RISK ASSESSMENT

Type of Loss Type of Data Stored

EXAMPLE: Customer Tax

Data

Example: The Cost of Broken Client Trust

Priority Level High Medium Low

Insert Risk Rating —

Example: Low/Medium/High

Page 5: Guide to Creating a Data Security Plan

5

ALL-INCLUSIVE BUSINESS HARDWARE INVENTORY

Product Make & Model

Serial or ID

Number

Where Do You

House This Hardware?

What Does This Product

Do or Store?

Level of Threat

Low/Medium/High

Additional, Pertinent

Info

Page 6: Guide to Creating a Data Security Plan

6

CURRENT & POTENTIAL DATA THREATS

Type of Threat Type of Info

EXAMPLE: Data from Tax

Returns

Insert Type of Loss — Ex: The Cost of Broken Client Trust

Example: Theft/Robbery

Insert Type of Loss

Insert Type of Loss

How Likely Is It That This Threat Will Occur? High Medium Low

Insert Risk Rating —

Example: Low/Medium/High

Page 7: Guide to Creating a Data Security Plan

7

HOW DO YOU PLAN TO RESOLVE ANY CURRENT ISSUES?

RESOLUTION NEEDED IMMEDIATELY

Issue(s) Date(s) of Resolution

Ex: Updating current software & security technology to ensure that data remains confidential & secure.

By The End of August

RESOLUTION NEEDED IN THE NEAR FUTURE

Issue(s) Date(s) of Resolution

RESOLUTION NEEDED FURTHER DOWN THE ROAD

Issue(s) Date(s) of Resolution

Page 8: Guide to Creating a Data Security Plan

Information provided in this eBook is general in nature, may not apply to your practice’s circumstance(s), and should not be construed as legal advice. Please refer to the IRS or consult your attorney for guidance.