利丰供应商反恐工作指引(中英文)_第1页
利丰供应商反恐工作指引(中英文)_第2页
利丰供应商反恐工作指引(中英文)_第3页
利丰供应商反恐工作指引(中英文)_第4页
利丰供应商反恐工作指引(中英文)_第5页
已阅读5页,还剩53页未读 继续免费阅读

下载本文档

版权说明:本文档由用户提供并上传,收益归属内容提供方,若内容存在侵权,请进行举报或认领

文档简介

1 CTPAT PRACTICE GUIDELINES 供应商反恐工作指引 2 文件清单文件清单 Required Document List 1 Record Documents Regarding Container Sealing including license plate cargo number and seal number 有关货柜封印的记录文件 含车牌号 货号及封条号 2 Record Documents for Incoming Outgoing Goods mainly finished products 货物 主要是成品 的进出记录文件 3 Record Documents for Incoming Outgoing Processed Materials 加工材料的进出记录文件 4 Record Documents for Raw Materials 原材料的进出记录文件 5 Documents provided by customers including details security rules specifications and product specifications 客户提供的安全细则 规范 产品规格等文件 6 Employee Personnel Record 员工人事记录 7 Factory Regulations and Rules 厂规 8 Detailed Security Rules and Manual for Workers 工厂的保安细则及手册 9 24hr day Security Shift Record 保安 24 小时轮班记录 10 Day to day Incoming Outgoing Vehicle Record 车辆日常进出登记表 11 Visitor Record 来访人员进出登记表 12 Post certificates for security guards and documents provided by local governmental authorities verifying their identify 保安人员上岗证或证明其身份的当地政府部门之资料 3 Content 目录 Chapter 1 Guidelines for Security and Safety Work第一章 保 安安全工作指引 3 1 1Purpose 目的 3 1 2Scope 范围 3 1 3Responsibilities 职责 3 1 4Reference Documents 参考文件 3 1 5Procedures 程式 3 1 5 1Security Training 安全培训安全培训 3 1 5 2Security Maintenance in Living Area 生活区安全维护生活区安全维护 3 1 5 3Security Maintenance in Factory Area 厂区安全维护厂区安全维护 3 1 5 4Supervision on Goods Loading and Unloading 装卸货物的监控装卸货物的监控 3 1 5 5Dismissed Employees 离厂员工离厂员工 3 1 5 6Fire Control 消防工作消防工作 3 1 6Records 记录 3 1 6 1 Training Record 培训记录 3 1 6 2 Visitor Record 来访人员登记表 3 1 6 3 Record for Incoming and Outgoing Vehicles 车辆出入登记表 3 Chapter 2 Computer Security Management System第二章 计算机安全 管理制度 3 2 1 Requirements 要求 3 2 2 Supervisory Measures 监管措施 3 2 3 Network Maintenance 网络的维护 3 Chapter 3 Responsibilities For Security Posts第三章 保安岗位职责 3 3 1 Purpose 目的 3 3 2 Scope 范围 3 3 3 Procedures 程式 3 3 4 Incoming Outgoing Vehicles 进入厂区的车辆 3 3 5 Factory Vehicle Management 管理厂车动向 3 3 6 Forbidden to Take Food into Factory 禁止员工携带食物 3 3 7 Weather Conditions 天气情况 3 3 8 Check for Water Power and Door Window 水电门窗检查 3 3 9 Responsibilities 职责 3 3 10 Responsibilities of Security Guards on Duty 值班保安职责 3 3 11 Responsibilities of Patrolling Security Guards 巡逻保安职责 3 Chapter 4 Human Resources Security Procedures 第四章 人力资 4 源安全程序 3 4 1 Human Resources Security Audit Procedures 人力资源安全稽查程序 3 4 2 Recruitment 招聘 3 4 3 Application Form 报名表 3 4 4 Important Posts 重要岗位 3 4 5 Training 培训 3 4 6 Personnel Training 人事培训 3 4 7 Survey 调查 3 4 8 Special Jobs 特殊工种 3 4 9 Safety Reporting 安全举报 3 Chapter 5 Guidelines for Personnel Dept 第五章 人事部工作指引 3 5 1 Purpose 目的 3 5 2 Scope 范围 3 5 3 Responsibilities 职责 3 5 4 Procedures 程式 3 5 4 1 Employee Recruitment 招聘人员 3 5 4 2 Training 培训 3 5 4 3 Archives Management 档案管理 3 5 4 4 Dismissed Employees 离厂员工 3 5 5 Record 记录 3 5 5 1 Personal Archives 人事档案 3 5 5 2 Application Form 报告表 3 5 5 3 Record for Dismissed Employees 离厂员工记录表 3 Chapter 6 Security Guidelines for Shipping Dept 第六章 船务部 安全工作指引 3 6 1 Purpose 目的 3 6 2 Scope 范围 3 6 3 Responsibilities 职责 3 6 4 Reference Documents 参考文件 3 6 5 Procedures 程式 3 6 5 1 Schedule for Goods Transportation 货物运输安排货物运输安排 3 6 6 Record 记录 3 6 6 1 Repeat order sheet 加单纸 3 6 6 2 Shipping Advice 出货通知书 3 6 6 3 Unloading Document 落货纸 3 6 6 4 Consignment Bill 托运单 3 Chapter 7 Physical Security Procedures 第七章 物理安全措施程 序 3 5 7 1 Purpose 目的 3 7 2 Scope 范围 3 7 3 Responsibilities 职责 3 7 4 Procedures 程序 3 7 5 Security Standards 安全标准 3 7 6 Security Maintenance 安全维护 3 7 7 Records 记录 3 7 7 1 Monthly Internal Self check Form 每月内部安全自查表 3 Chapter 8 Transportation Security Management Procedures 第八 章 运输安全管制程序 3 8 1 Purpose 目的 3 8 2 Scope 范围 3 8 3 Responsibilities 职责 3 8 4 Reference Documents 参考文件 3 8 5 Procedures 程式 3 8 6 Record 记录 3 Chapter 9 Security Guard Training Procedures 第九章 保安员培 训程序 3 9 1 Procedure 1 程序 1 3 9 2 Procedure 2 程序 2 3 9 3 Procedure 3 程序 3 3 9 4 Procedure 4 程序 4 3 9 5 Procedure 5 程序 5 3 Chapter 10 Security Survey after that security guards may notify relevant employees who should show notes issued by manager or factory director and conduct relevant registry at Security Office before ushering any visitor into the living area 所有雇员凭个人有效厂证 工作证 进出厂内外 无佩戴厂证者保安员必须进行相关盘 查并拒之门外 来访者需向保安员说明来访原因 填写 来访人员登记表 后 由保安 员通知被访者 被访者需凭经理或厂长签批的便条在保安处进行相关资料登记后方可带 领来访者进入生活区 1 5 2 1 Security guards should maintain security in the living area have employees observe Dormitory Management Regulations solve disputes between employees and maintain normal living order 保安员必须维持生活区的保安工作 管理员工遵守 宿舍管理制度 解决员工间的冲 突 维持正常生活秩序 1 5 2 2 Security guards should conduct unscheduled check on dormitory Once they find strangers there they should cross examine them immediately handle them correspondingly and report to local public security bureau or police station for serious cases 不定时对宿舍进行检查 如发现非本厂员工应即对其进行盘查 并作出相应处理 严重 的上报当地公安局或派出所等法律部门处理 1 5 3Security Maintenance in Factory Area 厂区安全维护厂区安全维护 1 5 3 1 All employees are required to show valid employee cards when entering and going out of the factory area or they should be cross examined and kept out of the factory area To leave factory area during working hours employees should show Leave Permit issued by department director or supervisor 所有雇员凭有效厂证 工作证 进入厂区 无佩戴厂证者将受到盘查并被拒之门外 工 作时间内员工需离开厂区的需凭部门主任或主管签发的 放行条 离开 1 5 3 2 Visitors are required to explain reason s of visit at Janitor Office and complete Visitor Record After that security guards may notify relevant personnel by phone issue VIP Card to visitors as appropriate and decide whether to escort them based on actual needs 来访者需到门卫值班室说明来访原因 并做好来访登记 记录于 来记人员登记表 值班员即时进行电话通知被访人 情况属实的发给来访客人 贵客卡 并视乎客人的 实际情况是否需要由保安员带领 1 5 3 3 For incoming and outgoing vehicles security guards should conduct relevant registry in Record for Incoming and Outgoing Vehicles and issue Driver Card when appropriate release vehicles in compliance with Leave Permit issued by warehouse take back Driver Card and record time of departure 11 登记 记录于 车辆出入登记表 内 符合进入条件的方可发给 司机卡 离开时凭货 仓签出的 放行条 放行及收回 司机卡 并记录离开时间 1 5 3 4 Security guards should keep monitoring on goods loading unloading zones goods yards and parking places and keep untrained or unauthorized personnel from entering such zones 负责以货物装卸区域及货场停场的监控 禁止未经培训或许可人员进入 1 5 3 5 Security guards should conduct scheduled patrol in factory area cross examine persons without valid certificates keep relevant records and report to local authorities for serious cases 保安员在厂区内进行定时巡查 如发现无证人员应即时通知进行盘查 并保存相关记录 严重的需上报当地部门处理 1 5 3 6 Security guards should implement Safety Improvement Plan maintain safety in factory area conduct internal safety check on quarterly basis and report relevant findings to security manager 安全改善计划 调查厂内安全 每季度进行内部安全查一次 结果上报安全经理 1 5 4Supervision on Goods Loading and Unloading 装卸货物的监控装卸货物的监控 When loading goods in goods loading zone security manager or his representative should conduct onsite supervision Unauthorized personnel or vehicles are not allowed to enter such zones 在装载区域内进行货物装载时 需由安全经理或代表人进行监控 未经许可人员或车 辆不得进入该区域内 1 5 4 1 After loading is complete security guards should lock them up immediately and make sure that drivers send goods to factory after they obtain transport sheet or report sheet issued by warehouse 货物在装载好后应即时上锁 并由安全人员确认司机在领取货仓开出的运输单或报送单 后即可将货物运送厂 1 5 4 2 Security manager or his representative should maintain supervision on incoming materials in unloading zone and forbid materials without shipping list to enter warehouse 安全经理或代表人在卸货区域对外来物料的监控 禁止一切无货单物料进入货仓内 1 5 5Dismissed Employees 离厂员工离厂员工 1 5 5 1 Personnel Dept should provide the name list of dismissed or discharged employees Security guards should supervise such employees when they are packing their belongings and going through relevant procedures arrange for them to leave after work conduct check and cross examination when they are leaving and take back their employee cards 被解雇及辞退的员工名单由人事部提供 由保安员负责监督对辞退员工行李的拾检 办 理退出床位手续 安排在下班时间经保安员检查及相关盘问后离开 并收回厂证 1 5 5 2 After dismissed employees leave factory security guards should keep them from reentering factory area 12 凡被解雇员工一经离厂后 保安员有责任不再让其进入厂区内 1 5 6Fire Control 消防工作消防工作 1 5 6 1 Security guards should conduct monthly check on fire equipment and submit written report to factory director once they find out any outdated or damaged fire facilities 保安员每月一次对消防设备进行检查 如发现过期或损坏的消防设施需向厂长书面审报 1 5 6 2 Training on fire control and exercises on fire escape twice every year 消防培训 每年两次消防逃生演习 1 6Records 记录记录 1 6 1 Training Record 培训记录 1 6 2 Visitor Record 来访人员登记表 1 6 3 Record for Incoming and Outgoing Vehicles 车辆出入登记表 Chapter 2 Computer Security Management System第二章第二章 计计 算机安全管理制度算机安全管理制度 Computer equipment in this document includes computer equipment in Computer Room and computer equipment installed by Computer Room in other departments or units 本文涉及的电脑设备 包括电脑室电脑设备及由电脑室负责安装在其它部门或单位的电脑设备 本文涉及的电脑设备 包括电脑室电脑设备及由电脑室负责安装在其它部门或单位的电脑设备 2 1 Requirements 要求要求 2 1 1 Software driver or CD ROM is not installed in ordinary operation departments For computers installed with software driver or CD ROM Virus Killer software should be used every time when CD is used 一般工作部不安装软驱和光驱 如有安装软驱和光驱的电脑 每次使用磁碟都要用杀毒 软件检查 2 1 2 For Web based computers no one is allowed to copy software or files to computer without authorization 对于联网的计算机 任何人在未经批准的情况下 不得向计算机内拷入软件或文档 2 1 3 Data backup should be managed by relevant personnel and floppy disk used for backup should be provided by designated person in charge 数据的备份由相关专业负责人管理 备份用的软盘由专业负责人提供 13 2 1 4 It is required to ensure floppy disk and CD are free from virus before use 软盘光盘等在使用前 必须确保无病毒 2 1 5 Antivirus software should be installed in computers and for confidential computers protection software such as Firewall should be installed 计算机必须安装防毒软件 机密计算机须安装防火墙等防护软件 2 1 6 Once virus is found in computers it is required to report to Computer Room personnel for corresponding handling 计算机一经发现病毒 应立即通知电脑室专业人员处理 2 1 7 Before leaving operators should exit systems and shut off computers 工操作员在离开前应退出系统并关机 2 1 8 No one should use others computers unless approved by relevant operators 任何人未经操作员本人同意 不得使用他人的电脑 2 2 Supervisory Measures 监管措施监管措施 2 2 1 It is the responsibility of the designated person to conduct protection test and cleanup for all computers 由专业人员负责所有微机的冱检测和清理工作 2 2 2 It is the responsibility of the designated person of Computer Room to conduct checks in compliance with the above work plans 由电脑室的专业人员 根据上述作业计划进行检测 2 2 3 It is the responsibility of the manager to supervise the implementation of the protection measures 由经理负责对防冱措施的落实情况进行监督 2 2 4 Computers in which software driver is installed cannot be networked For computers that are not networked Computer Room should be responsible for software installation To install software for any computer relevant personnel should submit written report and Computer Room should conduct such installation upon approval by manager In case of any anomaly for software it is required to notify relevant personnel in Computer Room No game software should be installed in any computer Data backup should be managed by relevant personnel and floppy disk used for backup should be provided by designated person in charge 装有软驱的微机一律不得入网 对于尚未联网计算机 其软件的安装由电脑室负责 任 何微机需安装软件时 由相关专业负责人提出书面报告 经经理同意后 由电脑室 负 责安装 软件出现 异常时 应通知电脑室专业人员处理 所有微机不得安装游戏软件 数据的备份由相关专业负责人管理 备份用的软盘由专业负责人提供 2 2 5 Hardware maintenance personnel should take necessary antistatic measures when disassembling computers and reassemble those disassembled computers after work and before leaving Relevant personnel should take practical measures to ensure proper use and maintenance of the computers and auxiliary equipment under their care Relevant personnel should take necessary measures to ensure that all computers and peripheral equipment are always in neat and good condition 14 Computers with locks should be locked after use and before operators leave All critical computers should have relay protection power as appropriate 硬件维护人员在拆卸微机时 必须采取必要的防静电措施 硬件维护人员在作业完成后 或准备离 去时 必须将所拆卸的设备复原 要求各专业负责人认真落实所辖微机及配 套设备的使用的 保养责任 要求各专业负责人采取必要措施 确保所用的微机及外设 始终处于整洁和良好的状态 所有带锁的微机 在使用完毕或离去前必须上锁 对于 关键的电脑设备应配备必要的继电保护电源 2 2 6 Relevant personnel should ensure proper use cleaning and maintenance of all computers in relevant departments frequently check the conditions of computers and peripheral equipment under their care try to find out and solve problems in a timely manner 各单位所辖微机的使用 清洗和保养工作 由相应专业负责人负责 各专业负责人必须 经常检查所辖微机及外设的状况 及时发现和解决问题 2 2 7 Computer equipment is gradually becoming an indispensable part of our work Based on this Computer Dept has decided to incorporate computer management into the scope of performance assessment for relevant personnel and strictly implement this management 由于电脑设备已逐步成为我们工作中必不可少的重要工作 因此 电脑部决定将电脑的 管理纳入对各专业负责人的考核范围 并将严格实行 2 2 8 In case of any one of the following circumstances Computer Dept will investigate into such cases and hold relevant personnel and direct leader responsible as the case may be 凡是发现以下情况的 电脑部根据实际情况追究当事人及其直接领导的责任 凡是发现以下情况的 电脑部根据实际情况追究当事人及其直接领导的责任 2 2 8 1 Computer affected by virus 电脑感染病毒 2 2 8 2 Unauthorized installation and use of unauthorized software including game software 私自安装和使用未经许可的软件 含游戏 2 2 8 3 Failure to use password function available in computers 微机具有密码功能却未使用 2 2 8 4 Failure to exit systems or shut off computers before leaving 离开微机却未退出系统或关机 2 2 8 5 Unauthorized use of other s computer or peripheral equipment resulting in adverse effect or losses 擅自使用他人微机或外设造成不良影响或损失 2 2 8 6 Failure to check or clean computers or relevant peripheral equipment in a timely manner 没有及时检查或清洁电脑及相关外设 2 2 9 Relevant personnel should be held responsible for damage or losses to hardware arising from the following circumstances 15 凡发现由于以下作业而造成硬件的损坏或丢失的 其损失由当事人负责 凡发现由于以下作业而造成硬件的损坏或丢失的 其损失由当事人负责 2 2 9 1 Failure to operate in compliance with instructions 违章作业 2 2 9 2 Improper maintenance 保管不当 2 2 9 3 Unauthorized installation and use of hardware and electric devices 擅自安装 使用硬件 和电气装置 2 2 10 Employees e mail may bring about several types of security vulnerabilities for corporate network For example when receiving unwanted e mail they directly open its files without any vigilance or they directly open its files without scanning whether such files contain virus Besides if we fail to send latest Virus Library to employees computers and compulsorily implement our policies but let employees freely update their Virus Library in their computers then there exists some risk for virus attack even if employees cautiously scan and open files every time after determining there is no virus in such files What s worse if unwanted e mail pornographic contents or other invasive contents run in offices uncurbed we are likely to face many legal issues 员工的电子邮件可能会为企业网络带来好几种安全漏洞 例如收到不请自来的邮件却毫 无警惕便 直接打开其附件 或是未对附加文件扫描是否有病毒藏匿其中便直接开启文 件等等 此外 企业若不主动将新的病毒库派送到员工的电脑上 强制施行公司制定的 政策 而是安全信任员工 随意更新自己电脑上的病毒库 那么就算员工每次都很谨慎 先扫描文件 确定没有病毒后才打开文件 仍然有被病毒感染的风险 更有甚者 若 是放任不当的电子邮件 色情或其它具有攻击性的内容在办公室到处流窜 企业更有可 能会面临法律上的种种问题 2 2 11 Password is the key vulnerability for most enterprises because many employees often share password or use simple password for the purpose of saving time If password is too simple it tends to be guessed out by others and used to steal information There are other network security vulnerabilities If users are not cautious enough their password can be easily disclosed to others when they use some kind of trickery For example they can easily get employees password via phone call or e mail as a disguise 密码是大部分企业的主要弱点 因为人们为了节省时间 常常会共享或选择简单的密码 密码若 不够复杂 便很容易被别人猜测到并用来取得机密资料 其实网络安全的弱点 还在于不是只有 使用者有密码而已 若态度不够谨慎 只要稍微运用一下手腕便可让 他们吐露出来 例如通过电话或电子邮件假装一下 通常就能把员工的密码骗到手 2 2 12 Employees completely don t know how to protect against security vulnerabilities If employees password is defrauded by others corporate portal will be open unprotected and susceptible to various types of attacks Untrained employees or employees who are not satisfied with their jobs are more likely to disclose our exclusive or sensitive information to our competitors or those who should not access such information 完全不知道如何防范各式各样的安全漏洞 例如通过社交手段套取等等 便会使得企业 门户大开 容易受到各种攻击 未受到正确训练或不满意工作的员工 更可能把企业独 家或敏感资料泄露给竞争对手等不应该接触到的这些资料的人 2 2 13 Our enterprise should decide who will be responsible for formulating and 16 implementing our key policies HR Dept should in written form let employees know about corporate policies through new employee training require employees to sign and confirm that they know about and are willing to comply with corporate policies and then strictly implement corporate policies and regulations without any exception When enacting such policies the company should clearly define detailed rules for punishing those who violate such policies Generally security system and network management personnel should establish security protection mechanism set up contingency groups to handle possible vulnerabilities closely coordinate with HR Dept and report suspected situations on timely basis 企业应决定由谁负责主导政策的制定与执行 人资部门则应在员工的新进训练时以书面 告知公 司的政策 待员工同意后要求其签名确认已了解并愿意遵守公司相关规定 之 后必须严格执行规定 绝对不能有例外 公司颂的政策内 应明确制定违反规定的处罚 细则 一般而言 安全系统与网络管理人员应该建构安全防护机制 成立紧急应变小 组以应付可能发生的漏洞 并与人资部门密切合作 随时报告可疑的状况 2 3 Network Maintenance 网络的维护网络的维护 2 3 1 It is required to formulate procedures stipulating the use of Internet and have employees know about regulations governing their use of e mail and computers In addition clear procedures stipulating the use of Internet can improve the efficiency of IT personnel in setting up and monitoring network security plans 设立网际网络使用规范 让员工了解公司对员工个人使用电子邮件与计算机的规定 此 外 明确的网络的使用规范更可提高 IT 人员设定与监视网络安全方案的效率 2 3 2 It is required to use technologies that can scan whether e mail contains improper contents and record networking act against corporate regulations 采用能够扫描邮件是否含有不适当内容的技术 并记录违反公司管制规定的网络行为 2 3 3 According to legal experts monitoring employees e mail and networking act may help protect corporate rights and interests in legal proceedings Therefore we should establish corresponding procedures and implement content supervising mechanism to protect employees from disturbance 法律专家认为 监视员工的电子邮件与网络行为在公司面对法律诉讼时 有利于保护公 司本身 因此企业应当设立使用规范 并采用内容监视机制 保护员工不受任何骚扰 2 3 4 It is required to train employees how to download latest antivirus i

温馨提示

  • 1. 本站所有资源如无特殊说明,都需要本地电脑安装OFFICE2007和PDF阅读器。图纸软件为CAD,CAXA,PROE,UG,SolidWorks等.压缩文件请下载最新的WinRAR软件解压。
  • 2. 本站的文档不包含任何第三方提供的附件图纸等,如果需要附件,请联系上传者。文件的所有权益归上传用户所有。
  • 3. 本站RAR压缩包中若带图纸,网页内容里面会有图纸预览,若没有图纸预览就没有图纸。
  • 4. 未经权益所有人同意不得将文件中的内容挪作商业或盈利用途。
  • 5. 人人文库网仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对用户上传分享的文档内容本身不做任何修改或编辑,并不能对任何下载内容负责。
  • 6. 下载文件中如有侵权或不适当内容,请与我们联系,我们立即纠正。
  • 7. 本站不保证下载资源的准确性、安全性和完整性, 同时也不承担用户因使用这些下载资源对自己和他人造成任何形式的伤害或损失。

评论

0/150

提交评论