Expert Advice Community

Guest

Template content

  Quote
Guest
Guest user Created:   Jan 01, 2019 Last commented:   Jan 01, 2019

Template content

What’s the meaning of Necessary manual controls that exist in Appendix Specification of Information System Requirements document and it’s a mandatory or not?
0 1

Assign topic to the user

ISO 27001 LEAD IMPLEMENTER COURSE

Become certified as an ISO 27001 consultant.

ISO 27001 LEAD IMPLEMENTER COURSE

Become certified as an ISO 27001 consultant.

Expert
Rhand Leal Jan 01, 2019

Answer:

In the "Necessary manual controls" field you must list all controls identified as applicable that for any reason you cannot integrate in the information system you want to protect. For example, if you cannot perform automated output validation and this is a system security requirement, then you should implement it manually.

It is not mandatory to fill in the "Necessary manual controls" field if all required controls can be automated into the information system.

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Jan 01, 2019

Jan 01, 2019

Suggested Topics

Guest user Created:   Mar 13, 2020 ISO 27001 & 22301
Replies: 1
0 0

Template content

Guest user Created:   Mar 11, 2020 ISO 27001 & 22301
Replies: 1
0 0

Template content

Guest user Created:   Feb 26, 2020 ISO 27001 & 22301
Replies: 1
0 0

Template content - DRP