As a Chief Security Officer of a Hypothetical organization which has international presence, how do you ensure that your cyber security policy has the appropriate controls needed to keep your organization's information secure with a remediation plan in place in the event of an incident?
(With references and put quotation marks on the quotes you use.)