ISO/IEC 27000 Response to Information Security Incidents, v2022

Specifies requirements in accordance with the security and privacy controls specified by ISO/IEC Publication 27001:2022, related to response to information security incidents.

Assessment Step

1
Response to Information Security Incidents (ResponsetoInformationSecurityIncidents)
Does the organization respond to information security incidents in accordance with documented procedures?
Artifact
A1
Provide evidence (e.g. organizational policies, procedures, compliance/assessment reports, etc.) and supporting notes as appropriate to support the assessor's response to this assessment step.

Conformance Criteria (1)

Response to Information Security Incidents
Information security incidents shall be responded to in accordance with the documented procedures.
Citations
27001
Annex A, Control 5.26
27002
Section 5.26