ASTM D 8320 : 2021
Current
The latest, up-to-date edition.
Standard Practice for Implementing an Information Security Program in a Cannabis Operation
English
12-08-2021
| Committee |
D 37
|
| DocumentType |
Standard Practice
|
| Pages |
20
|
| PublisherName |
American Society for Testing and Materials
|
| Status |
Current
|
1.1This practice covers recommendations for implementing an information security program to protect businesses operating in the regulated cannabis industry. An information security program is part of an overall security program that each business should implement.
1.2This practice applies to any legal business entity that handles cannabis products, including cultivation, processing, manufacturing, transportation, warehousing, lab testing, distribution, retail, home delivery, and waste. This practice will include protections for analog (paper) and digital information assets.
1.3Actual implementation will vary depending on organizational size and type, information asset types, sensitivity and volume of assets, risk tolerance and resource constraints of the organization, and mandates particular to the organization.
1.4This standard does not purport to address all of the safety concerns, if any, associated with its use. It is the responsibility of the user of this standard to establish appropriate safety, health, and environmental practices and determine the applicability of regulatory limitations prior to use.
1.5This international standard was developed in accordance with internationally recognized principles on standardization established in the Decision on Principles for the Development of International Standards, Guides and Recommendations issued by the World Trade Organization Technical Barriers to Trade (TBT) Committee.
| ASTM F 3286 : 2017 : R2024 | Standard Guide for Cybersecurity and Cyberattack Mitigation |
| ASTM F 3286 : 2017 | Standard Guide for Cybersecurity and Cyberattack Mitigation |
Access your standards online with a subscription
-
Simple online access to standards, technical information and regulations.
-
Critical updates of standards and customisable alerts and notifications.
-
Multi-user online standards collection: secure, flexible and cost effective.