Cross-Sector

ISO/IEC 27001:2022

International standard for information security management systems (ISMS). Provides a systematic approach to managing sensitive information through risk assessment and treatment.

4Categories
93Controls
Readiness

Control Categories

Organizational Controls

37 controls

Policies, roles, responsibilities, segregation of duties, threat intelligence, and supplier management.

Not started

People Controls

8 controls

Screening, employment terms, awareness, training, disciplinary processes, and remote working.

Not started

Physical Controls

14 controls

Security perimeters, physical entry, office/facility security, and equipment protection.

Not started

Technological Controls

34 controls

Endpoint devices, access rights, authentication, cryptography, secure development, and monitoring.

Not started