SP-10 — Information security policy
Establish information security policy covering scope, risk appetite, objectives, commitment, and review cycle.
| Property | Value |
|---|---|
| Section | TR 5.2 §6.2.1 |
Mapped Controls
| Control | Title |
|---|---|
| SID-ORG-01 | Information Security Policy |
Source: Nordic EUDIW Common Certification System (NOBCCS) v0.4, June 2026