Back to all guides
Creating Security Policies
Learn how to create and customise security policies for your organisation.
Overview
Security policies define the rules and requirements for your organisation's security posture. Bleach helps you create, deploy, and monitor policy compliance.
Step 1: Access Policy Manager
- Navigate to Policies → Policy Manager
- Click "Create New Policy"
- Choose to start from scratch or use a template
Step 2: Define Policy Basics
- Enter a descriptive policy name
- Select the policy category (Access, Data, Compliance, etc.)
- Write a clear policy description and objective
- Set the policy owner and review frequency
Step 3: Configure Policy Rules
- Add specific requirements or controls
- Set compliance criteria (pass/fail conditions)
- Define exceptions if applicable
- Link to relevant compliance frameworks
Step 4: Set Scope and Enforcement
- Select which users or groups the policy applies to
- Choose enforcement mode (monitor only or enforce)
- Configure violation notifications
- Set remediation timeframes
Step 5: Review and Publish
- Preview the policy configuration
- Run a compliance simulation
- Publish the policy (active) or save as draft
- Monitor compliance from the dashboard
Policy Best Practices
- Start with templates and customise as needed
- Use clear, actionable language
- Set realistic compliance timeframes
- Review and update policies quarterly
- Communicate policies to affected users