SPRING DISCOUNT
Get 30% off on toolkits, course exams, and Conformio yearly plans.
Limited-time offer – ends April 25, 2024
Use promo code:
SPRING30

Expert Advice Community

Guest

Naming of ISO 27001 Annex

  Quote
Guest
Guest user Created:   Dec 08, 2021 Last commented:   Dec 08, 2021

Naming of ISO 27001 Annex

Why does iso 27001 domains starts from annex A.5, but not A.1? Is there any specific reason or are there any other unused/ old domains?
0 0

Assign topic to the user

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

Expert
Rhand Leal Dec 08, 2021

ISO 27001 Annex A is directly related in numbering to ISO 27002 (a non-mandatory standard which provides guidance for implementation of Annex A controls), and sections 1 to 4 in ISO 27002 do not cover controls:

0 Introduction

1 Scope

2 Normative references

3 Terms and definitions

4 Structure of this standard

From section 5 onwards, the section title is the same from the respective ISO 27001 Annex A section. For example, both ISO 27001 Annex A.5 section and ISO 27002 section 5 are titled A.5 “Information security policies”

This article will provide you a further explanation about ISO 27001 and ISO 27002:

- ISO 27001 vs. ISO 27002 https://advisera.com/27001academy/knowledgebase/iso-27001-vs-iso-27002/

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Dec 08, 2021

Dec 08, 2021

Suggested Topics