ISO/IEC 27000 Inventory of Information and Other Associated Assets, v2022
Specifies requirements in accordance with the security and privacy controls specified by ISO/IEC Publication 27001:2022, related to inventory of information and other associated assets.
Assessment Step
1
Inventory of Information and Other Associated Assets (InventoryofInformationandOtherAssociatedAssets)
Has the organization developed, and does it maintain, an inventory of information and other associated assets, including owners?
Artifact
A1
Provide evidence (e.g. organizational policies, procedures, compliance/assessment reports, etc.) and supporting notes as appropriate to support the assessor's response to this assessment step.
|
Conformance Criteria (1)
Inventory of Information and Other Associated Assets
An inventory of information and other associated assets, including owners, shall be developed and maintained.
Citations
27001
Annex A, Control 5.9
27002
Section 5.9
|