Organizations implement information security for a wide range of reasons. The main objectives of Information Security are typically related to ensuring confidentiality, integrity, and availability of company information. Since Information Security covers many areas, it often involves the implementation of various types of security, including application security, infrastructure security, cryptography, incident response, vulnerability management, and disaster recovery.It is essential for any organisation to develop the policies for better performance...