Information Security, Cybersecurity And Privacy Protection – Information Security Controls

This document provides a reference set of generic information security controls including implementation guidance. This document is designed to be used by organisations:

✅ within the context of an information security management system (ISMS) based on ISO/IEC27001;
✅ for implementing information security controls based on internationally recognized best practices;
✅ for developing organisation – specific information security management guidelines.

ISO/IEC 27002:2022