Filter posts by category

ISO 27001 Annex A Controls

ISO 27001 Annex A 5.24 – Information Security Incident Management Planning and Preparation

This rule is about information security incident management, which means a company must have a system and people to handle the information security incidents. What is ISO 27001 Annex A 5.24? The latest version of the ISO 27001 standard is ISO/IEC 27001:2022 (published in October 2022). In the ISO/IEC 27001:2022 Standard the control is titled “Information Security Incident […]

ISO 27001 Annex A 5.24 – Information Security Incident Management Planning and Preparation Read More »

ISO 27001 Annex A 5.23 – Information Security For Use Of Cloud Services

This rule is about cloud supplier management, which means a company must have a system to handle the information security risks of its third party cloud systems, products and services. What is ISO 27001 Annex A 5.23? The latest version of the ISO 27001 standard is ISO/IEC 27001:2022 (published in October 2022). In the ISO/IEC 27001:2022 Standard the

ISO 27001 Annex A 5.23 – Information Security For Use Of Cloud Services Read More »

ISO 27001 Annex A 5.22 Monitor, Review And Change Management Of Supplier Services Explained

ISO 27001 Annex A 5.22 – Monitor, Review And Change Management Of Supplier Services

This rule is about ICT supplier management, which means a company must have a system to handle the management of its third party IT systems, products and services. What is ISO 27001 Annex A 5.22? The latest version of the ISO 27001 standard is ISO/IEC 27001:2022 (published in October 2022). In the ISO/IEC 27001:2022 Standard the control is

ISO 27001 Annex A 5.22 – Monitor, Review And Change Management Of Supplier Services Read More »

ISO 27001 Annex A 5.21 Managing Information Security In The ICT Supply Chain

ISO 27001 Annex A 5.21 – Managing Information Security In The ICT Supply Chain

This rule is about ICT supplier management, which means a company must have a system to handle the information security risks of its third party IT systems, products and services. What is ISO 27001 Annex A 5.21? The latest version of the ISO 27001 standard is ISO/IEC 27001:2022 (published in October 2022). In the ISO/IEC 27001:2022 Standard the

ISO 27001 Annex A 5.21 – Managing Information Security In The ICT Supply Chain Read More »

ISO 27001 Annex A 5.19 Information Security In Supplier Relationships

ISO 27001 Annex A 5.19 – Information Security In Supplier Relationships

The ISO 27001 Annex A 5.19 rule is about managing information security when working with other companies (suppliers). This rule requires your business to handle the security risks that come from using products and services provided by these suppliers. In short, it helps you keep your supply chain secure. Suppliers are one of your biggest

ISO 27001 Annex A 5.19 – Information Security In Supplier Relationships Read More »