Strategy & Governance
Security Policy, Risk Management Framework, Statement of Applicability (SoA), SMB1001.

Required for IRAP, ISM, PSPF and ISO 27001, SMB1001.
Identity & Access
Acceptable Use Policy, Access Control Policy, Privileged Access Management (PAM) Policy.

Essential for IRAP, ISM/PSPF and NIST governance.
Data & Operations
Data Classification Policy, Incident Response Plan (IRP), Backup & Recovery Policy.

Critical for PSPF, ISM and data loss prevention (DLP) requirements.
System Security
Vulnerability Management Policy, Patch Management Policy, Cloud Security Standards.

Supports IRAP, ISM, Essential Eight, SMB1001 and CIS Benchmarks enforcement.