Policies vs Standards - Are supposed to check the compliance of standards?
I have a doubt to be cleared from the GRC community. Usually, we draft the policies and every policy statement in the policy are created as control objectives under the policy. Similarly, Standards, Procedures, Operational Manuals also can be create...