Good Security Policy Names Names
TL;DR I wrote the security policies and procedures for a company against NIST CSF and NIST 800-53, and these days I ghostwrite books for the security leaders who live this
Security governance is the layer that makes the technical work actually happen and keep happening. These articles cover it from the inside: assigned responsibility, auditable controls, and why the document most companies ignore is where security really lives.
TL;DR I wrote the security policies and procedures for a company against NIST CSF and NIST 800-53, and these days I ghostwrite books for the security leaders who live this
If this sparked something, let's talk about turning your expertise into a finished book.