Security Policy

Security policy is a special document describing the process of information security and data protection within an organization.

Security policy provides a description of the various controls the organization will use to protect information. CISO is usually responsible for security policy management.
Security Glossary

Security Policy
SQL Injection