Hi to All Linux gurrus

I need to formalise the security procedures for the linux servers. I want to make a policy document so that if i can apply this policy to the new servers.

1. Outline documentation

I have a few headlines that can be added to the document, feel free to add, edit and delete as you see fit.

a) Account Management

i) Password policy

b) Services

c) Patching / Updating

d) Kernel Updates

e) Log monitoring / management

f) Intrusion Detection Systems

Can any body help me in this regard?
I will appericiate if someone can highlight more areas.