Acceptable Use Policy (AUP)
Organisation: _______________________ Effective date: _______________________ Work model: Office / Hybrid / Remote
1. Purpose
Defines acceptable use of company IT resources including devices, networks, email, and cloud services.
2. Acceptable use
Employees may use company systems for:
- Business activities aligned with their role
- Reasonable personal use that does not interfere with work or security
- Communication required for job duties
3. Prohibited use
- Unauthorized access to systems or data
- Sharing credentials or bypassing security controls
- Installing unapproved software
- Storing illegal or offensive material
- Cryptocurrency mining on company devices
- Exfiltrating confidential data to personal accounts
4. Device and network security
- Keep devices locked when unattended
- Report lost or stolen devices within 24 hours
- Do not connect to unsecured public Wi-Fi without VPN
- Encrypt sensitive data in transit and at rest
5. Monitoring
The organisation may monitor systems for security, compliance, and operational purposes in accordance with applicable law and internal privacy policies.
6. Violations
Violations may result in disciplinary action up to and including termination.
Employee acknowledgement:
I have read and agree to comply with this policy.
Name: _______________________ Signature: _______________________ Date: __________