id:qquestionopt1opt2opt3answer
1:q1Does your organization have written security policies and procedures?YesNoNot SureYes
2:q2Does your organization utilize a firewall product, which includes automatic updates against security vulnerabilities? YesWe utilized our ISP's firewallNot SureYes
3:q3Does your organization have a virus detection/protection program on your email server?YesIndividual desktops are scanned when viruses are suspectedISP has virus protectionYes
4:q4Does your organization utilize a spam filtering software on your email server?YesNo, we delete them as they come inISP has spam filteringYes
5:q5If your organization has a firewall, does someone at your company review the security logs on your server?At least DailyWeekly/MonthlyWhenever they get a chanceAt least Daily
6:q6Does your organization have a policy on passwords?Employees choose their own Corporate PolicyDo not use passwordsCorporate Policy
7:q7Does your organization restrict access to certain web sites, such as Hotmail, Yahoo, online casino's, etc. ?YesNoNot sureYes
9:q9Does your organization perform regular backups that are verified?Yes - DailyYes - Weekly/MonthlyNoYes - Daily
10:q10Does your organization have a written disaster recovery plan in the event of any of the following items, network security breach, damage to physical buildings such as fire, etc?YesNoNot SureYes
11:q11Does your organization have a privacy statement published on your web site that reflects your privacy policy and procedures?YesPrivacy statement but not a written policyNoYes