Almost every company has an information security policy. The trouble starts when you have to prove someone actually read it, that it gets reviewed on a schedule, and that what the document says matches what’s actually configured on your employees’ laptops. It’s the first document an auditor asks for, and it’s also the one that […]