Ƶ

Security Aup for the United States

Security Aup Template for United States

A Security Acceptable Use Policy (AUP) is a comprehensive document that outlines the rules and responsibilities for using an organization's IT systems and networks. This document, governed by U.S. federal and state laws, establishes acceptable practices, prohibited activities, and security requirements for all users accessing organizational resources. It includes compliance with various regulations such as CFAA, ECPA, and state-specific data protection laws, while providing clear guidelines for enforcement and consequences of violations.

Your data doesn't train Genie's AI

You keep IP ownership of your information

Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.

Download a Standard Template

4.6 / 5
4.8 / 5
Access for free
OR

Alternatively: Run an advanced review of an existing
Security Aup

Let Ƶ's market-leading legal AI identify missing terms, unusual language, compliance issues and more - in just seconds.

What is a Security Aup?

The Security AUP serves as a critical document in establishing and maintaining organizational cybersecurity protocols. It should be implemented when an organization needs to protect its digital assets and ensure compliance with U.S. federal and state regulations. The document typically includes comprehensive guidelines for system access, data protection, acceptable use of resources, and security incident reporting. This policy helps organizations maintain security standards while providing clear direction to users about their responsibilities and obligations when accessing organizational systems.

What sections should be included in a Security Aup?

1. Purpose and Scope: Defines the objectives of the policy and who it applies to

2. Acceptable Use Guidelines: Core rules for acceptable system and network usage

3. Prohibited Activities: Specific actions and behaviors that are forbidden

4. Security Requirements: Mandatory security practices and controls

5. Compliance and Enforcement: Consequences of non-compliance and enforcement procedures

What sections are optional to include in a Security Aup?

1. Industry-Specific Requirements: Additional requirements for specific industries (e.g., healthcare, finance) - use when organization operates in regulated industries

2. Remote Work Provisions: Special security requirements for remote access and work - use when organization allows remote work

3. BYOD Policy: Rules for using personal devices for work purposes - use when organization allows personal devices

What schedules should be included in a Security Aup?

1. Technical Security Standards: Detailed technical requirements and configurations

2. Incident Response Procedures: Step-by-step procedures for handling security incidents

3. User Acknowledgment Form: Form for users to acknowledge policy understanding and acceptance

4. Glossary of Terms: Definitions of technical and security-related terms

Authors

Alex Denne

Head of Growth (Open Source Law) @ Ƶ | 3 x UCL-Certified in Contract Law & Drafting | 4+ Years Managing 1M+ Legal Documents | Serial Founder & Legal AI Author

Jurisdiction

United States

Publisher

Ƶ

Cost

Free to use
Clauses






















Industries

Computer Fraud and Abuse Act (CFAA): Federal law that addresses unauthorized access and computer-related fraud, including criminal penalties for various computer crimes.

Electronic Communications Privacy Act (ECPA): Federal legislation that regulates the interception of electronic communications and governs the monitoring of employee communications.

Health Insurance Portability and Accountability Act (HIPAA): Federal law that establishes security requirements for protected health information and medical data.

Gramm-Leach-Bliley Act (GLBA): Federal law that sets security requirements for financial information and institutions.

Federal Information Security Management Act (FISMA): Federal law that establishes security standards for federal information systems and applies when dealing with federal agencies.

State Data Breach Notification Laws: State-specific laws that establish requirements for reporting security incidents and data breaches, varying by jurisdiction.

State Privacy Laws (e.g., CCPA, SHIELD Act): State-specific legislation establishing data protection requirements and privacy standards, such as the California Consumer Privacy Act and New York's SHIELD Act.

Payment Card Industry Data Security Standard (PCI DSS): Industry standard establishing security requirements for organizations that handle credit card data.

NIST Cybersecurity Framework: Voluntary framework providing best practices and security controls for managing cybersecurity risk in organizations.

Teams

Employer, Employee, Start Date, Job Title, Department, Location, Probationary Period, Notice Period, Salary, Overtime, Vacation Pay, Statutory Holidays, Benefits, Bonus, Expenses, Working Hours, Rest Breaks,  Leaves of Absence, Confidentiality, Intellectual Property, Non-Solicitation, Non-Competition, Code of Conduct, Termination,  Severance Pay, Governing Law, Entire Agreemen

Find the exact document you need

Workplace Acceptable Use Policy

A U.S.-compliant policy document establishing guidelines for acceptable use of company IT resources and systems.

Download

Wireless Use Policy

A U.S.-compliant policy document establishing rules and requirements for wireless network usage within an organization.

Download

Wireless Acceptable Use Policy

A U.S.-compliant policy document that governs the acceptable use of an organization's wireless network infrastructure and resources.

Download

Website Acceptable Use Policy

A legal document governing website usage terms and conditions in the US, establishing rules for users while protecting the website owner's interests.

Download

Use Policy

A legally binding document outlining terms and conditions for service usage under US law.

Download

Use Of Technology Policy

A legally compliant framework for technology usage in US organizations, establishing guidelines for appropriate use of digital resources and systems.

Download

Unacceptable Use Policy

A US-jurisdiction document that defines prohibited activities and behaviors when using a service or platform.

Download

Technology Use Policy For Employees

A U.S.-compliant policy document that establishes guidelines and requirements for employee use of company technology resources.

Download

Technology Use Policy

A U.S.-compliant policy document governing the use of organizational technology resources and systems.

Download

Standard Acceptable Use Policy

A U.S.-compliant legal document defining rules and guidelines for acceptable use of services, networks, or platforms.

Download

Staff Acceptable Use Policy

A U.S.-compliant policy document defining acceptable use of organizational IT resources and systems by staff members.

Download

Security Aup

A U.S.-governed policy document that defines acceptable use of organizational IT resources and security requirements for all system users.

Download

Security Acceptable Use Policy

A policy document outlining acceptable use of organizational IT systems and security requirements, compliant with US regulations.

Download

Responsible Use Policy

A US-compliant policy document that establishes guidelines for appropriate use of organizational IT resources and systems.

Download

Responsible Internet Use Policy

A policy document outlining acceptable internet use guidelines and responsibilities within an organization, compliant with US federal and state regulations.

Download

Resource Usage Policy

A U.S.-compliant policy document establishing guidelines for organizational resource usage and management.

Download

Removable Media Acceptable Use Policy

A U.S.-compliant policy document governing the use of portable storage devices and removable media within an organization.

Download

Remote Access Acceptable Use Policy

A US-compliant policy document establishing guidelines and requirements for secure remote access to organizational systems and data.

Download

Network Use Policy

A legally binding document establishing guidelines for acceptable network use in U.S. organizations, compliant with federal and state regulations.

Download

Network Acceptable Use Policy

A U.S.-compliant policy document defining acceptable use of organizational network resources and infrastructure.

Download

Mobile Phone Acceptable Use Policy

A U.S.-compliant policy document establishing guidelines for mobile device usage within organizations, including security, privacy, and compliance requirements.

Download

Library Acceptable Use Policy

A U.S.-compliant policy document establishing rules and guidelines for library facility and resource usage.

Download

It Usage Policy

A U.S.-compliant policy document defining acceptable use and security requirements for organizational IT resources.

Download

It Aup

A U.S.-compliant policy document outlining acceptable use of organizational IT resources and systems.

Download

It Appropriate Use Policy

A U.S.-compliant policy document establishing guidelines for proper use of organizational IT resources and systems.

Download

It Acceptable Use Policy

A U.S.-compliant policy document defining acceptable use of organizational IT resources and systems, including security protocols and user responsibilities.

Download

Isp Acceptable Use Policy

A U.S.-compliant legal document defining rules and restrictions for using an ISP's network and services.

Download

Internet Use Policy For Schools

A U.S.-compliant policy document establishing guidelines for internet usage in educational institutions, ensuring student safety and legal compliance.

Download

Internet Use Policies

A US-compliant policy document establishing rules and guidelines for organizational internet usage and system access.

Download

Internet And Email Acceptable Use Policy

A U.S.-compliant policy document establishing guidelines for appropriate use of organizational internet and email systems.

Download

Internet Acceptable Use Policy For Employees

A U.S.-compliant policy document that governs employee internet and IT system usage within organizations, establishing guidelines and protecting company assets.

Download

Infosec Acceptable Use Policy

A U.S.-compliant policy document defining acceptable use of organizational IT resources and security requirements.

Download

Information Security Acceptable Use Standard

A U.S.-compliant standard defining acceptable use of information systems and data security requirements within an organization.

Download

Information Security Acceptable Use Policy

A U.S.-compliant policy document establishing rules and guidelines for acceptable use of organizational IT resources and information security practices.

Download

Ict Usage Policy

A U.S.-compliant policy document governing the use of organization's ICT resources and establishing user responsibilities.

Download

Ict Acceptable Use Policy In The Workplace

A U.S.-compliant policy document defining acceptable use of company ICT resources and systems in the workplace.

Download

Hospital Acceptable Use Policy

A U.S.-compliant policy document governing the appropriate use of hospital information systems and technology resources while ensuring HIPAA compliance.

Download

Ethical Computer Use Policy

A U.S.-compliant policy document establishing guidelines for appropriate use of organizational computer systems and digital resources.

Download

Employee Internet Usage Policy

A US-compliant policy document that governs employee internet usage in the workplace, establishing guidelines and protecting both employer and employee rights.

Download

Employee Aup

A U.S.-compliant policy document that establishes guidelines for employee use of organization's IT resources and systems.

Download
See more related templates

ұԾ’s Security Promise

Genie is the safest place to draft. Here’s how we prioritise your privacy and security.

Your documents are private:

We do not train on your data; ұԾ’s AI improves independently

All data stored on Genie is private to your organisation

Your documents are protected:

Your documents are protected by ultra-secure 256-bit encryption

We are ISO27001 certified, so your data is secure

Organizational security:

You retain IP ownership of your documents and their information

You have full control over your data and who gets to see it