Expert Advice Community

Guest

Business abiding by ISO 27001 when using BYOD policy

  Quote
Guest
Guest user Created:   Mar 30, 2021 Last commented:   Mar 30, 2021

Business abiding by ISO 27001 when using BYOD policy

How would a business abide by ISO 27001 when using a BYOD policy?

0 0

Assign topic to the user

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

Expert
Rhand Leal Mar 30, 2021

First of all, you have to perform a risk assessment to identify which risks related to BYOD practice you have to treat, and which legal requirements (e.g., clauses of contracts, laws, or regulations) you have to fulfill. After that, you have to identify proper controls to be implemented. In general, to secure BYOD practices you have to consider the following controls:

  • A.6.2.1 Mobile device policy
  • A.6.2.2 Teleworking
  • A.13.2.1 Information transfer policies and procedures
  • A.13.2.3 Electronic messaging

Normally, these are implemented through a BYOD policy, which you can see how it looks like at this link: https://advisera.com/27001academy/documentation/bring-your-own-device-byod-policy/

This article will provide you a further explanation about BYOD policy:

These materials will also help you regarding BYOD policy and for training and awareness:

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Mar 30, 2021

Mar 30, 2021