ISO/IEC 27000 Response to Information Security Incidents, v2022
Specifies requirements in accordance with the security and privacy controls specified by ISO/IEC Publication 27001:2022, related to response to information security incidents.
Assessment Step
1
Response to Information Security Incidents (ResponsetoInformationSecurityIncidents)
Does the organization respond to information security incidents in accordance with documented procedures?
Artifact
A1
Provide evidence (e.g. organizational policies, procedures, compliance/assessment reports, etc.) and supporting notes as appropriate to support the assessor's response to this assessment step.
|
Conformance Criteria (1)
Response to Information Security Incidents
Information security incidents shall be responded to in accordance with the documented procedures.
Citations
27001
Annex A, Control 5.26
27002
Section 5.26
|