ISO/IEC 27001:2022
Requirements Covered
Timeline
| Milestone | Date | Notes |
|---|---|---|
| Published | Oct 25, 2022 | ISO/IEC 27001:2022 released |
Provisions (2)
Confidentiality and Access
"ISO/IEC 27001 frames confidentiality as ensuring that only the right people can access organizational information."
Requirements
| Requirement | Details |
|---|---|
| Confidential access | Ensure only the right people can access information |
| Risk management | Manage risks to information handled by the organization |
Sources: ISO/IEC 27001:2022
Information Integrity
"ISO/IEC 27001 treats information integrity as one of the three core information-security principles, alongside confidentiality and availability."
Requirements
| Requirement | Details |
|---|---|
| Information integrity | Keep information reliably stored and protected from erasure or damage |
| Risk management | Use an ISMS to manage risks to information security |
Sources: ISO/IEC 27001:2022