https://nvlpubs.nist.gov/nistpubs/Legacy/SP/nistspecialpublication800-111.pdf
This NIST Special Publication provides recommendations to facilitate more efficient and effective storage encryption solution design, implementation, and management for Federal departments and agencies.
https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-175Br1.pdf
This NIST Special Publication is one part in a series of documents intended to provide guidance to the Federal Government for using cryptography to protect its sensitive, but unclassified digitized information during transmission and while in storage.
NIST SP 800-53: CP–9 Information System Backup
3.8 3.8.9 Media Protection
https://csrc.nist.gov/projects/cprt/catalog#/cprt/framework/version/SP_800_53_5_1_0/home?element=CP-9
NIST resource that defines requirements for system backup activities.
https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-88r2.pdf
This NIST Special Publication provides guidance for completing the media sanitization process.
North Carolina Manufacturing Extension Partnership – A Closer Look at NIST SP 800-171: The Media Protection Family
3.8 3.8.1 Media Protection
https://ncmep.org/a-closer-look-at-nist-800-171-the-media-protection-family/
This is a blog from North Carolina Manufacturing Extension Partnership which speaks to the importance of media protection and how it is defined in NIST 800-171 publication.
https://www.nsa.gov/Resources/Media-Destruction-Guidance/
NSA's Center for Storage Device Sanitization Research (CSDSR) guides the sanitization of information system (IS) storage devices. Resources for a vendor of storage device sanitization, the NSA Evaluated Products Lists (EPLs), and contact information for the Center for Storage Device Sanitization Research are provided on this page.
https://www.opswat.com/blog/removable-media-policy-guidelines-best-practices
Implementing a removable media policy helps organizations control how employees use USB drives, external hard drives, and other portable storage devices. The main purpose is to prevent data breaches and malware infections while keeping sensitive company information secure. These policies set clear rules about what's allowed and what isn't, helping businesses stay compliant with important security standards like ISO 27001, NIST, and Department of Defense requirements.
https://docs.redhat.com/en/documentation/red_hat_enterprise_linux/7/html/security_guide/sec-using-usbguard
The USBGuard software framework provides system protection against intrusive USB devices by implementing basic whitelisting and blacklisting capabilities based on device attributes.
https://assets.contentstack.io/v3/assets/blt36c2e63521272fdc/bltea59236f183ab31b/5e9e06135352ae292603886c/removable_media_policy.pdf
This sample policy provided by SANS discusses removable media.
https://assets.contentstack.io/v3/assets/blt36c2e63521272fdc/blt923fb32fd86a4b9f/5e9dd76dc81c45292c0d4f78/technology_equipment_disposal_policy.pdf
This is a equipment disposal policy created by SANS that can be freely used.