Good Security Policy Names Names
TL;DR I wrote the security policies and procedures for a company against NIST CSF and NIST 800-53, and these days I ghostwrite books for the security leaders who live this
Most security policies sit in a drawer ignored. These articles cover what makes one actually work: naming who owns each step by title, and connecting it to the frameworks it satisfies, from someone who wrote them against federal standards.
TL;DR I wrote the security policies and procedures for a company against NIST CSF and NIST 800-53, and these days I ghostwrite books for the security leaders who live this
If this sparked something, let's talk about turning your expertise into a finished book.