Independent Security Assessments (SS-08-042)

Requires IT systems to be assessed by an independent third-party

Information Security Controls Policy (PS-17-001)

Improves how security controls are managed within the State’s shared-service environment. The Security Control Policy addresses this business challenge by establishing clearer lines of delineation between security controls, ownership and the overall responsibility of execution.

Information Security Infrastructure (SS-08-005)

Requirements for creating an information security program and infrastructure