Expert Advice Community

Guest

Support re. internal audit section of ISO 27001 2022

  Quote
Guest
Guest user Created:   May 26, 2023 Last commented:   May 26, 2023

Support re. internal audit section of ISO 27001 2022

The policy templates we received as part of our toolkit refer to ISO27001. Should this be changed to ISO27002?

0 0

Assign topic to the user

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

Expert
Rhand Leal May 26, 2023

There is no need to change the templates’ reference to ISO 27002.

Please note that ISO 27001 is the main standard for Information Security Management Systems, while ISO 27002 is a supporting standard that can be used to help implement controls from ISO 27001 Annex A. 

Additionally, in certification audits, the auditor reference is ISO 27001, not ISO 27002.

For further information, see:

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

May 26, 2023

May 26, 2023