I saw a post around 6 months ago about this, but I haven't been able to find it again. I'm starting the process of writing my company NSD and would like suggestions on things to include and such forth.
I've included just some basics (I'm just in outline form right now) like physical security (servers, workstations, routers), password security, incoming email security, and lastly...accountability for security breaches.
Any help you guys could give is much appreciated.
