Included Static Application Security Test (SAST) and Dynamic Application Security Test (DAST) tools in the SDLC process.
Added a data retention policy.
Applications should only be installed from official application stores.
Clarified systems which can be used through BYOD.
Added a section about gathering forensic evidence.
Added latest version of FundApps' Business Continuity Plan.