Assembling a security policy can be a difficult task without guidance.
The International Organization for Standardization (ISO) published a
security standard called ISO/IEC 27002. This document refers to
information technology related security issues and outlines a code of
practice for IT security management. ISO/IEC 27002 provides a guideline
for developing organizational security standards and security
management practices.