What is IT and Communication Policy?
A ready-to-use IT and Communication Policy covering internal and external communication, information security, and device usage, plus a free downloadable PDF.
Download IT and Communication Policy Template
Table of Contents
What is an IT and Communication Policy?
IT and Communication, often shortened to ICT, covers the technology and systems a company uses to store, access, and share information, everything from phones and computers to the software and networks that connect them. In most organizations today, the term covers any communication device or channel, from email and video conferencing to cell phones and the company network.
An IT and Communication policy sets expectations for how communication happens, both inside the company and with the outside world. Done well, it supports productive, meaningful communication without shutting conversations down, while also being clear about how electronic devices and tools should be used, so the company avoids liability or awkward situations down the line.
Standard IT and Communication Policy Format
Here's a sample IT and Communication Policy you can adapt for your own organization:
[Company Name] believes a clear communication policy reduces conflict and misunderstanding. Organizations also need to be clear about how electronic equipment and facilities may be used, to avoid liability and trouble. This policy covers IT usage and communication.
Purpose
This policy sets out what the organization expects and how communication flows, both inside and outside the organization. It aims to support meaningful, essential communication that helps employee productivity and morale, without restricting communication so much that employees feel intimidated or powerless.
Scope
This policy applies to all employees of the company.
Guiding Principles
[Company Name] recognizes that active communication with stakeholders and the general public is a core part of its strategy. To meet its communication goals, employees must follow these guidelines:
- Only authorized people may hold formal meetings with external stakeholders, including media engagements and press releases.
- All information must reach stakeholders on time, through appropriate, approved channels.
- Stakeholder requests for information get a turnaround of [Number of days] working days.
- Information given to stakeholders must be accurate, transparent, and as open as possible, while the company's confidentiality is maintained.
- All communication must be clear, concise, and purposeful.
- Feedback is collected regularly from all stakeholders to improve service delivery.
Guidelines for External Communication
The support and engagement of external stakeholders are critical to [Company Name]'s long-term success. All communication with them should support that, and aim to keep stakeholders well informed rather than confused.
- All external communication must be approved and routed through [Formal Title of the Person]. Communication with government representatives, and the sharing of other confidential information, needs approval from the [MD or CEO].
- [Formal Title of the Person] must review all presentations and materials used externally before they reach stakeholders, including those for meetings, seminars, and conferences, and anything uploaded.
- Communication with the media must be handled with sensitivity and professionalism, and always directed by [Formal Title of the Person].
Guidelines for Internal Communication
- Internal communication is aimed at all internal stakeholders and supports the company's overall objectives.
- The teams responsible for internal correspondence handle it.
- Communication between staff must always be professional.
- Staff should be addressed by first name in speech and by initials in writing. Official letters must use the staff member's full name.
- Nicknames or other informal names are strictly forbidden in written communication.
Disclosure of Confidential Information
- [Company Name] is committed to timely, accurate, and complete disclosure of necessary company information, in an appropriate manner.
- The disclosure of confidential information is strictly prohibited.
- Employees must sign a Non-Disclosure and Confidentiality Agreement. Violating it is a legal offense.
Information Security and Monitoring Policy
This policy sets out the security measures that must be applied consistently across [Company Name] to keep its business operations secure, covering the confidentiality, integrity, and availability of information.
Electronic and Wireless Policy
[Company Name] has this policy in place to keep its data and technology infrastructure safe.
- Employees should protect personal and company-issued devices with passwords and keep anti-virus software up to date.
- Employees must log in only over secure networks.
Cell Phone Policy
This policy applies to any device that can make or receive calls, send messages, browse the internet, download information, or send and receive email, whether personally owned or company-issued.
Company-owned cell phones must stay switched on during working hours, work-related travel, and any other times the company specifies.
Employees must not use cell phones:
- While driving
- While operating equipment
- During meetings
- For long personal calls during office hours
- For recording the company's confidential information
Employees can use cell phones for:
- Making business-related calls
- Checking important messages
- Scheduling or checking appointments
- Short personal calls
[Company Name] has the right to monitor inappropriate or excessive cell phone use, and disciplinary action will be taken if these terms are breached.
Internet Usage Policy
The company's electronic communication system must be used only for company business. Employees should not use the internet for personal advantage or entertainment, and should be aware that content they create has no right to privacy and can be used by the company without prior notice.
Appropriate use means using the internet to complete assigned work and to find information needed for it. Internet use is inappropriate if an employee uses it to:
- Upload or download obscene, illegal, or offensive material
- Expose the company's confidential information to unauthorized parties
- Invade other employees' privacy
- Engage in piracy
- Visit unsecured websites that threaten the safety of the computer network
- Hack
A breach of this policy makes the employee liable to disciplinary or legal action.
Quick, Actionable Tips
- The purpose and scope of the policy.
- Guiding principles for communication.
- Guidelines for internal and external communication.
- How confidential information should be disclosed.
- Provisions for information security and monitoring.
- The electronic and wireless device policy.
- The cell phone policy.
- The internet usage policy.