National Information Security Policy and Guidelines | Ministry of Home Affairs Added section 6.3.1 – Core security goals Revision of title for section 6.4 as Security audit Revision of title for section 6.4.1 as Security audits Added section 6.4.3 – Coordination with agencies Added section 6.5 - Exception to implementation of recommended guidelines and controls Revision of text of section 8.1 – Security division 3.0 Final Draft Revision of text of section 10 – Domains impacting information security under section 10.9 and 10.10 15 May 2014 Added section 20 – Guidelines for technology specific ICT deployment Added section 21 – Guidelines for essential security practices Revision of title for Annexure 1 as References Annexure added – Feedback received from various Ministries/ departments on NISPG Added guideline on LAN security in section 12.3.5 as G5 Added guideline on Wireless architecture in section 12.3.6 as G6 Added guideline on Notification to agencies in section 16.3.8 as G42 Added guidelines on cloud computing in section 20.1.2 as G65, G66, G67, G68, G69, G70, G71, G72, G73, G74, G75 Added guidelines on mobility and BYOD in section 20.2.2 as G76, G77, G78, G79, G80 Added guidelines on virtualization in section 20.3.2 as G81, G82, G83, G84, G85, G86, G87 Added guidelines on security testing in section 21.1.2 as G88, G89, G90, G91 Added guidelines on security auditing in section 21.2.2 as G92, G93, G94, G95 Added guidelines on business continuity in section 21.3.2 as G96, G97, G98, G99, G100, G101 Added control on LAN security in section 12.4.9 as C9 Added control on Wireless LAN in section 12.4.13 as C10 Added control on Infrastructure protection in NISPG - Version 5.0 Restricted Page 10

Select target paragraph3