Report on selection of software technology
Assign topic to the user
ISO 27001 does not prescribe such a type of report. In terms of systems development/acquisition, one document you can take a look at is the Specification of Information System Requirements: https://advisera.com/27001academy/documentation/specification-of-information-system-requirements/
The purpose of this specification is to document all requirements for new information systems, and for improvements of existing information systems. This information can be used as input for your report.
This article will provide you with a further explanation about system development:
- How to integrate ISO 27001 A.14 controls into the system/software development life cycle (SDLC) https://advisera.com/27001academy/blog/2017/01/24/how-to-integrate-iso-27001-a-14-controls-into-the-system-software-development-life-cycle-sdlc/
Comment as guest or Sign in
Jan 21, 2022