ISO/IEC 27000 Screening, v2022

Specifies requirements in accordance with the security and privacy controls specified by ISO/IEC Publication 27001:2022, related to screening.

Assessment Step

1
Screening (Screening)
Does the organization carry out background verification checks on all candidates prior to joining the organization and on an ongoing basis, considering applicable laws, regulations, ethics, business requirements, the classification of information to be accessed, and perceived risks?
Artifact
A1
Provide evidence (e.g. organizational policies, procedures, compliance/assessment reports, etc.) and supporting notes as appropriate to support the assessor's response to this assessment step.

Conformance Criteria (1)

Screening
Background verification checks on all candidates to become personnel shall be carried out prior to joining the organization and on an ongoing basis taking into consideration applicable laws, regulations and ethics and be proportional to the business requirements, the classification of the information to be accessed and the perceived risks.
Citations
27001
Annex A, Control 6.1
27002
Section 6.1