Document Type: Engineering Documentation Index / Reference
Owner: Engineering Lead
Applies To: All engineering contributors
Review Frequency: Annual
Version: 1.0

Purpose

This index lists the security and privacy engineering documents that define how Vertuna designs, builds, reviews, and operates systems securely. It provides a single reference point for engineering, audit readiness, and vendor assessments.

Scope

Applies to all engineering activities and all Vertuna-managed systems.

Engineering Security Standards Library

Core Engineering Standards

  1. Engineering Security & Privacy-by-Design Principles (Standard)

  2. Significant Code Change Review & Approval Process (Process)

  3. Secure-by-Design Engineering Review Checklist (Checklist)

  4. Privacy Impact Checklist (Checklist)

Supporting Security Policies

  1. Access Control Policy

  2. Encryption & Cryptographic Controls Policy

  3. Vulnerability Management Policy

  4. Patch Management Policy

  5. Logging & Monitoring Policy

  6. Incident Response Policy

  1. Environment Segregation Policy

  1. Third-Party Risk Management Policy

  1. Asset Management Policy

  1. Endpoint Security & Removable Media Policy

Control Coverage Mapping (High Level)

This standards library supports common audit and assessment controls including:

Maintenance and Ownership

Document Control

Version 1.0 — Owner: Engineering Lead — Next Review: 12 months