Does ISO/IEC 27001:2022 require Access Control?

Yes — 1 provision

Confidentiality and Access

Implements: Access Control active Effective: Oct 25, 2022
"ISO/IEC 27001 frames confidentiality as ensuring that only the right people can access organizational information."

Requirements

RequirementDetails
Confidential accessEnsure only the right people can access information
Risk managementManage risks to information handled by the organization
View Framework View Requirement Coverage matrix