ISO 27001 requirements
Assign topic to the user
Answer: ISO 27001 requires only that physical areas and equipment are protected against unauthorized physical access, damage, loss and interference, providing general controls to be fulfilled for each issue (e.g., security perimeter, equipment maintenance, entry controls, etc.). This standard does not provide details on how this should be done (e.g., type of technology, quantities, etc.). For more detailed orientation you should consider ISO 27002, which provides guidelines for the implementation of controls from ISO 27001.
These articles will provide you further explanation about ISO 27001 and ISO 27002 and physical controls:
- What is ISO 27001 https://advisera.com/27001academy/what-is-iso-27001/
- ISO 27001 vs. ISO 27002 https://advisera.com/27001academy/knowledgebase/iso-27001-vs-iso-27002/
- How to implement equipment physical protection accordi ng to ISO 27001 A.11.2 – Part 1 https://advisera.com/27001academy/blog/2016/04/18/how-to-implement-equipment-physical-protection-according-to-iso-27001-a-11-2-part-1/
- How to implement equipment physical protection according to ISO 27001 A.11.2 – Part 2 https://advisera.com/27001academy/blog/2016/04/26/how-to-implement-equipment-physical-protection-according-to-iso-27001-a-11-2-part-2/
- Physical security in ISO 27001: How to protect the secure areas https://advisera.com/27001academy/blog/2015/03/23/physical-security-in-iso-27001-how-to-protect-the-secure-areas/
These materials will also help you regarding ISO 27001 and ISO 27002:
- Book Secure & Simple: A Small-Business Guide to Implementing ISO 27001 On Your Own https://advisera.com/books/secure-and-simple-a-small-business-guide-to-implementing-iso-27001-on-your-own/
- Free online training ISO 27001 Foundations Course https://advisera.com/training/iso-27001-foundations-course/
Comment as guest or Sign in
Sep 24, 2017