The changes to ISO/IEC 27001 and ISO/IEC 27002 in 2022 represent a leap forward in the effectiveness of Information Security Management Systems (ISMS). Quick and effective adoption of the latest global best practice is essential to ensure trust in your organization’s ability to protect information.
Key changes include:
- Updated controls aligned with current business practices and associated threats
- New “attributes” to enable alignment with different risk management methodologies including global cybersecurity frameworks
- Simplified and streamlined grouping of controls
- Greater clarity on management requirements in line with ISO Harmonized Structure