ISO/IEC 27000 Secure System Architecture and Engineering Principles, v2022

Specifies requirements in accordance with the security and privacy controls specified by ISO/IEC Publication 27001:2022, related to secure system architecture and engineering principles.

Assessment Step

1
Secure System Architecture and Engineering Principles (SecureSystemArchitectureandEngineeringPrinciples)
Are principles for engineering secure systems established, documented, maintained, and applied to any information system development activities?
Artifact
A1
Provide evidence (e.g. organizational policies, procedures, compliance/assessment reports, etc.) and supporting notes as appropriate to support the assessor's response to this assessment step.

Conformance Criteria (1)

Secure System Architecture and Engineering Principles
Principles for engineering secure systems shall be established, documented, maintained and applied to any information system development activities.
Citations
27001
Annex A, Control 8.27
27002
Section 8.27