What is an IT Policy?

What is an IT Policy?

An IT Policy is a high-level statement of management intent that formally establishes requirements to guide decisions and achieve rational outcomes.

IT Policies are high-level statements of management intent from an organization’s executive leadership that are designed to influence decisions and guide the organization to achieve the desired outcomes. IT Policies are enforced by standards and further implemented by procedures to establish actionable and accountable requirements. IT Policies are a business decision, not a technical one. Technology determines how policies are implemented. IT Policies usually exist to satisfy an external requirement (e.g., law, regulation and/or contract).