Expert Advice Community

Guest

Data Integrity

  Quote
Guest
Guest user Created:   Apr 21, 2020 Last commented:   Apr 21, 2020

Data Integrity

One question I had in regards to the security clauses was, how does the ISO 27001 ensure us data integrity?

0 0

Assign topic to the user

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

Expert
Rhand Leal Apr 21, 2020

ISO 27001 makes use of a systematic management approach to help organizations:

  • identify information security risks that can promise information confidentiality, integrity or availability (based on their context, objectives and interested parties needs)
  • define proper controls to treat relevant risks (based on controls from Annex A, as well as from other sources of controls if needed), and expected information security performance results (i.e. information security objectives)
  • periodically evaluate information security performance
  • implement corrections and/or improvements based on achieved results

Regarding controls specifically related to protection of information integrity, these are some examples:

  • A.10.1 Cryptographic controls
  • A.12.5.1 Installation of software on operational systems
  • A.9.4.4 Use of privileged utility programs 
  • A.12.1.2 Change management

These articles will provide you further explanation about ISO 27001:

These materials will also help you regarding ISO 27001:

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Apr 21, 2020

Apr 21, 2020

Suggested Topics