National Information Security Policy and Guidelines | Ministry of Home Affairs
Added section 6.3.1 – Core security goals
Revision of title for section 6.4 as Security audit
Revision of title for section 6.4.1 as Security audits
Added section 6.4.3 – Coordination with agencies
Added section 6.5 - Exception to implementation
of recommended guidelines and controls
Revision of text of section 8.1 – Security division
3.0
Final Draft
Revision of text of section 10 – Domains impacting
information security under section 10.9 and 10.10
15 May 2014
Added section 20 – Guidelines for technology
specific ICT deployment
Added section 21 – Guidelines for essential
security practices
Revision of title for Annexure 1 as References
Annexure added – Feedback received from various
Ministries/ departments on NISPG
Added guideline on LAN security in section 12.3.5
as G5
Added guideline on Wireless architecture in
section 12.3.6 as G6
Added guideline on Notification to agencies in
section 16.3.8 as G42
Added guidelines on cloud computing in section
20.1.2 as G65, G66, G67, G68, G69, G70, G71, G72,
G73, G74, G75
Added guidelines on mobility and BYOD in section
20.2.2 as G76, G77, G78, G79, G80
Added guidelines on virtualization in section
20.3.2 as G81, G82, G83, G84, G85, G86, G87
Added guidelines on security testing in section
21.1.2 as G88, G89, G90, G91
Added guidelines on security auditing in section
21.2.2 as G92, G93, G94, G95
Added guidelines on business continuity in section
21.3.2 as G96, G97, G98, G99, G100, G101
Added control on LAN security in section 12.4.9 as
C9
Added control on Wireless LAN in section 12.4.13
as C10
Added control on Infrastructure protection in
NISPG - Version 5.0
Restricted
Page 10