11 HMG SECURITY-RELATED DOCUMENTS

In this chapter, we will examine a number of key UK government documents that are the most relevant to information security.

HMG SECURITY POLICY FRAMEWORK

The most recent HMG Security Policy Framework at the time of writing is version 1.1, dated May 2018. It is an unclassified, publicly available document that can be downloaded from https://www.gov.uk/government/publications/security-policy-framework and includes government security classifications. It outlines the following areas:

  • overarching principles;
  • security outcomes;
  • good governance;
  • culture and awareness;
  • risk management;
  • information;
  • technology and services;
  • personnel security;
  • physical security;
  • preparing for and responding to security incidents. ...

Get Information Risk Management, 2nd Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.