changed links as result of rename
This commit is contained in:
parent
5ac81f0efc
commit
66993e892d
92 changed files with 93 additions and 93 deletions
|
|
@ -1,4 +1,4 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.10_OT%20Acceptable%20use%20of%20information%20and%20other%20associated%20assets.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.10-Acceptable-use-of-information-and-other-associated-assets.md)
|
||||||
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_5.10_PE%20Acceptable%20use%20of%20information%20and%20other%20associated%20assets.md)
|
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_5.10_PE%20Acceptable%20use%20of%20information%20and%20other%20associated%20assets.md)
|
||||||
ISO 27002:2013: 08.1.3, 08.2.3
|
ISO 27002:2013: 08.1.3, 08.2.3
|
||||||
|
|
||||||
|
|
|
||||||
|
|
@ -1,4 +1,4 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.11_OT%20Return%20of%20assets.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.11-Return-of-assets.md)
|
||||||
[[ISO_27002_2022_5.11_PE Return of assets \|Plain English]]
|
[[ISO_27002_2022_5.11_PE Return of assets \|Plain English]]
|
||||||
ISO 27002:2013: 08.1.4
|
ISO 27002:2013: 08.1.4
|
||||||
|
|
||||||
|
|
|
||||||
|
|
@ -1,4 +1,4 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.12_OT%20Classification%20of%20information.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.12-Classification-of-information.md)
|
||||||
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_5.12_PE%20Classification%20of%20information.md)
|
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_5.12_PE%20Classification%20of%20information.md)
|
||||||
ISO 27002:2013: 08.2.1
|
ISO 27002:2013: 08.2.1
|
||||||
|
|
||||||
|
|
|
||||||
|
|
@ -1,4 +1,4 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.13_OT%20Labelling%20of%20information.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.13-Labelling-of-information.md)
|
||||||
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_5.13_PE%20Labelling%20of%20information.md)
|
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_5.13_PE%20Labelling%20of%20information.md)
|
||||||
ISO 27002:2013: 08.2.2
|
ISO 27002:2013: 08.2.2
|
||||||
|
|
||||||
|
|
|
||||||
|
|
@ -1,4 +1,4 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.14_OT%20Information%20transfer.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.14-Information-transfer.md)
|
||||||
[[ISO_27002_2022_5.14_PE Information transfer \|Plain English]]
|
[[ISO_27002_2022_5.14_PE Information transfer \|Plain English]]
|
||||||
ISO 27002:2013: 13.2.1, 13.2.2, 13.2.3
|
ISO 27002:2013: 13.2.1, 13.2.2, 13.2.3
|
||||||
|
|
||||||
|
|
|
||||||
|
|
@ -2,6 +2,6 @@
|
||||||
|
|
||||||
Foundational rules and principles to control access to information assets, in line with business and information security requirements.
|
Foundational rules and principles to control access to information assets, in line with business and information security requirements.
|
||||||
|
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.15_OT%20Access%20control.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.15-Access-control.md)
|
||||||
[[ISO_27002_2022_5.15_PE Access control \|Plain English]]
|
[[ISO_27002_2022_5.15_PE Access control \|Plain English]]
|
||||||
ISO 27002:2013: 09.1.1, 09.1.2
|
ISO 27002:2013: 09.1.1, 09.1.2
|
||||||
|
|
|
||||||
|
|
@ -2,7 +2,7 @@
|
||||||
|
|
||||||
Identity life cycle management.
|
Identity life cycle management.
|
||||||
|
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.16_OT%20Identity%20management.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.16-Identity-management.md)
|
||||||
[[ISO_27002_2022_5.16_PE Identity management \|Plain English]]
|
[[ISO_27002_2022_5.16_PE Identity management \|Plain English]]
|
||||||
ISO 27002:2013: 09.2.1
|
ISO 27002:2013: 09.2.1
|
||||||
|
|
||||||
|
|
|
||||||
|
|
@ -2,7 +2,7 @@
|
||||||
|
|
||||||
Managing authentication information, including advising personnel on how to handle authentication information.
|
Managing authentication information, including advising personnel on how to handle authentication information.
|
||||||
|
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.17_OT%20Authentication%20information.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.17-Authentication-information.md)
|
||||||
[[ISO_27002_2022_5.17_PE Authentication information \|Plain English]]
|
[[ISO_27002_2022_5.17_PE Authentication information \|Plain English]]
|
||||||
ISO 27002:2013: 09.2.4, 09.3.1, 09.4.3
|
ISO 27002:2013: 09.2.4, 09.3.1, 09.4.3
|
||||||
|
|
||||||
|
|
|
||||||
|
|
@ -2,7 +2,7 @@
|
||||||
|
|
||||||
Access rights management procedures (provisioning, review, modification and removal) in line with business rules for access control (from [A5.15](ISO_27002_2022_5.15_MoC%20Access%20control.md)).
|
Access rights management procedures (provisioning, review, modification and removal) in line with business rules for access control (from [A5.15](ISO_27002_2022_5.15_MoC%20Access%20control.md)).
|
||||||
|
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.18_OT%20Access%20rights.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.18-Access-rights.md)
|
||||||
[[ISO_27002_2022_5.18_PE Access rights \|Plain English]]
|
[[ISO_27002_2022_5.18_PE Access rights \|Plain English]]
|
||||||
ISO 27002:2013: 09.2.2, 09.2.5, 09.2.6
|
ISO 27002:2013: 09.2.2, 09.2.5, 09.2.6
|
||||||
|
|
||||||
|
|
|
||||||
|
|
@ -1,4 +1,4 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.19_OT%20Information%20security%20in%20supplier%20relationships.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.19-Information-security-in-supplier-relationships.md)
|
||||||
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_5.19_PE%20Information%20security%20in%20supplier%20relationships.md)
|
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_5.19_PE%20Information%20security%20in%20supplier%20relationships.md)
|
||||||
ISO 27002:2013: 15.1.1
|
ISO 27002:2013: 15.1.1
|
||||||
|
|
||||||
|
|
|
||||||
|
|
@ -1,4 +1,4 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.20_OT%20Addressing%20information%20security%20within%20supplier%20agreements.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.20-Addressing-information-security-within-supplier-agreements.md)
|
||||||
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_5.20_PE%20Addressing%20information%20security%20within%20supplier%20agreements.md)
|
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_5.20_PE%20Addressing%20information%20security%20within%20supplier%20agreements.md)
|
||||||
ISO 27002:2013: 15.1.2
|
ISO 27002:2013: 15.1.2
|
||||||
|
|
||||||
|
|
|
||||||
|
|
@ -1,4 +1,4 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.21_OT%20Managing%20information%20security%20in%20the%20ICT%20supply%20chain.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.21-Managing-information-security-in-the-ICT-supply-chain.md)
|
||||||
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_5.21_PE%20Managing%20information%20security%20in%20the%20ICT%20supply%20chain.md)
|
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_5.21_PE%20Managing%20information%20security%20in%20the%20ICT%20supply%20chain.md)
|
||||||
ISO 27002:2013: 15.1.3
|
ISO 27002:2013: 15.1.3
|
||||||
|
|
||||||
|
|
|
||||||
|
|
@ -1,4 +1,4 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.22_OT%20Monitoring,%20review%20and%20change%20management%20of%20supplier%20services.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.22-Monitoring-review-and-change-management-of-supplier-services.md)
|
||||||
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_5.22_PE%20Monitoring,%20review%20and%20change%20management%20of%20supplier%20services.md)
|
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_5.22_PE%20Monitoring,%20review%20and%20change%20management%20of%20supplier%20services.md)
|
||||||
ISO 27002:2013: 15.2.1, 15.2.2
|
ISO 27002:2013: 15.2.1, 15.2.2
|
||||||
|
|
||||||
|
|
|
||||||
|
|
@ -1,4 +1,4 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.23_OT%20Information%20security%20for%20use%20of%20cloud%20services.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.23-Information-security-for-use-of-cloud-services.md)
|
||||||
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_5.23_PE%20Information%20security%20for%20use%20of%20cloud%20services.md)
|
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_5.23_PE%20Information%20security%20for%20use%20of%20cloud%20services.md)
|
||||||
ISO 27002:2013: n/a
|
ISO 27002:2013: n/a
|
||||||
|
|
||||||
|
|
|
||||||
|
|
@ -1,5 +1,5 @@
|
||||||
# About Control 5.24: Information security incident management planning and preparation
|
# About Control 5.24: Information security incident management planning and preparation
|
||||||
|
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.24_OT%20Information%20security%20incident%20management%20planning%20and%20preparation.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.24-Information-security-incident-management-planning-and-preparation.md)
|
||||||
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_5.24_PE%20Information%20security%20incident%20management%20planning%20and%20preparation.md)
|
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_5.24_PE%20Information%20security%20incident%20management%20planning%20and%20preparation.md)
|
||||||
ISO 27002:2013: 16.1.1
|
ISO 27002:2013: 16.1.1
|
||||||
|
|
|
||||||
|
|
@ -1,5 +1,5 @@
|
||||||
# About Control 5.25: Assessment and decision on information security events
|
# About Control 5.25: Assessment and decision on information security events
|
||||||
|
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.25_OT%20Assessment%20and%20decision%20on%20information%20security%20events.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.25-Assessment-and-decision-on-information-security-events.md)
|
||||||
[[ISO_27002_2022_5.25_PE Assessment and decision on information security events \|Plain English]]
|
[[ISO_27002_2022_5.25_PE Assessment and decision on information security events \|Plain English]]
|
||||||
ISO 27002:2013: 16.1.4
|
ISO 27002:2013: 16.1.4
|
||||||
|
|
|
||||||
|
|
@ -1,5 +1,5 @@
|
||||||
# About Control 5.26: Response to information security incidents
|
# About Control 5.26: Response to information security incidents
|
||||||
|
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.26_OT%20Response%20to%20information%20security%20incidents.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.26-Response-to-information-security-incidents.md)
|
||||||
[[ISO_27002_2022_5.26_PE Response to information security incidents \|Plain English]]
|
[[ISO_27002_2022_5.26_PE Response to information security incidents \|Plain English]]
|
||||||
ISO 27002:2013: 16.1.5
|
ISO 27002:2013: 16.1.5
|
||||||
|
|
|
||||||
|
|
@ -1,5 +1,5 @@
|
||||||
# About Control 5.27: Learning from information security incidents
|
# About Control 5.27: Learning from information security incidents
|
||||||
|
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.27_OT%20Learning%20from%20information%20security%20incidents.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.27-Learning-from-information-security-incidents.md)
|
||||||
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_5.27_PE%20Learning%20from%20information%20security%20incidents.md)
|
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_5.27_PE%20Learning%20from%20information%20security%20incidents.md)
|
||||||
ISO 27002:2013: 16.1.6
|
ISO 27002:2013: 16.1.6
|
||||||
|
|
|
||||||
|
|
@ -1,6 +1,6 @@
|
||||||
# About Control 5.28: Collection of evidence
|
# About Control 5.28: Collection of evidence
|
||||||
|
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.28_OT%20Collection%20of%20evidence.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.28-Collection-of-evidence.md)
|
||||||
[[ISO_27002_2022_5.28_PE Collection of evidence \|Plain English]]
|
[[ISO_27002_2022_5.28_PE Collection of evidence \|Plain English]]
|
||||||
ISO 27002:2013: 16.1.7
|
ISO 27002:2013: 16.1.7
|
||||||
|
|
||||||
|
|
|
||||||
|
|
@ -1,6 +1,6 @@
|
||||||
# About Control 5.29: Information security during disruption
|
# About Control 5.29: Information security during disruption
|
||||||
|
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.29_OT%20Information%20security%20during%20disruption.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.29-Information-security-during-disruption.md)
|
||||||
[[ISO_27002_2022_5.29_PE Information security during disruption \|Plain English]]
|
[[ISO_27002_2022_5.29_PE Information security during disruption \|Plain English]]
|
||||||
ISO 27002:2013: 17.1.1, 17.1.2, 17.1.3
|
ISO 27002:2013: 17.1.1, 17.1.2, 17.1.3
|
||||||
|
|
||||||
|
|
|
||||||
|
|
@ -1,4 +1,4 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.2_OT%20Information%20security%20roles%20and%20responsibilities.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.2-Information-security-roles-and-responsibilities.md)
|
||||||
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_5.2_PE%20Information%20security%20roles%20and%20responsibilities.md)
|
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_5.2_PE%20Information%20security%20roles%20and%20responsibilities.md)
|
||||||
ISO 27002:2013: 06.1.1
|
ISO 27002:2013: 06.1.1
|
||||||
|
|
||||||
|
|
|
||||||
|
|
@ -1,4 +1,4 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.30_OT%20ICT%20readiness%20for%20business%20continuity.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.30-ICT-readiness-for-business-continuity.md)
|
||||||
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_5.30_PE%20ICT%20readiness%20for%20business%20continuity.md)
|
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_5.30_PE%20ICT%20readiness%20for%20business%20continuity.md)
|
||||||
ISO 27002:2013: n/a
|
ISO 27002:2013: n/a
|
||||||
|
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.31_OT%20Legal,%20statutory,%20regulatory%20and%20contractual%20requirements.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.31-Legal-statutory-regulatory-and-contractual-requirements.md)
|
||||||
[[ISO_27002_2022_5.31_PE Legal, statutory, regulatory and contractual requirements \|Plain English]]
|
[[ISO_27002_2022_5.31_PE Legal, statutory, regulatory and contractual requirements \|Plain English]]
|
||||||
ISO 27002:2013: 18.1.1, 18.1.5
|
ISO 27002:2013: 18.1.1, 18.1.5
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.32_OT%20Intellectual%20property%20rights.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.32-Intellectual-property-rights.md)
|
||||||
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_5.32_PE%20Intellectual%20property%20rights.md)
|
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_5.32_PE%20Intellectual%20property%20rights.md)
|
||||||
ISO 27002:2013: 18.1.2
|
ISO 27002:2013: 18.1.2
|
||||||
|
|
|
||||||
|
|
@ -4,6 +4,6 @@ This Control is about the **control, purpose, and guidance for managing and prot
|
||||||
|
|
||||||
I would say: record keeping procedures, in line with legal and other requirements.
|
I would say: record keeping procedures, in line with legal and other requirements.
|
||||||
|
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.33_OT%20Protection%20of%20records.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.33-Protection-of-records.md)
|
||||||
[[ISO_27002_2022_5.33_PE Protection of records \|Plain English]]
|
[[ISO_27002_2022_5.33_PE Protection of records \|Plain English]]
|
||||||
ISO 27002:2013: 18.1.3
|
ISO 27002:2013: 18.1.3
|
||||||
|
|
|
||||||
|
|
@ -1,4 +1,4 @@
|
||||||
|
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.34_OT%20Privacy%20and%20protection%20of%20PII.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.34-Privacy-and-protection-of-PII.md)
|
||||||
[[ISO_27002_2022_5.34_PE Privacy and protection of PII \|Plain English]]
|
[[ISO_27002_2022_5.34_PE Privacy and protection of PII \|Plain English]]
|
||||||
ISO 27002:2013: 18.1.4
|
ISO 27002:2013: 18.1.4
|
||||||
|
|
|
||||||
|
|
@ -1,6 +1,6 @@
|
||||||
# About Control 5.35: Independent review of information security
|
# About Control 5.35: Independent review of information security
|
||||||
|
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.35_OT%20Independent%20review%20of%20information%20security.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.35-Independent-review-of-information-security.md)
|
||||||
[[ISO_27002_2022_5.35_PE Independent review of information security \|Plain English]]
|
[[ISO_27002_2022_5.35_PE Independent review of information security \|Plain English]]
|
||||||
|
|
||||||
ISO 27002:2013: 18.2.1
|
ISO 27002:2013: 18.2.1
|
||||||
|
|
|
||||||
|
|
@ -1,5 +1,5 @@
|
||||||
# About Control 5.36: Compliance with policies, rules and standards for information security
|
# About Control 5.36: Compliance with policies, rules and standards for information security
|
||||||
|
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.36_OT%20Compliance%20with%20policies,%20rules%20and%20standards%20for%20information%20security.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.36-Compliance-with-policies-rules-and-standards-for-information-security.md)
|
||||||
[[ISO_27002_2022_5.36_PE Compliance with policies, rules and standards for information security \|Plain English]]
|
[[ISO_27002_2022_5.36_PE Compliance with policies, rules and standards for information security \|Plain English]]
|
||||||
ISO 27002:2013: 18.2.2, 18.2.3
|
ISO 27002:2013: 18.2.2, 18.2.3
|
||||||
|
|
@ -1,4 +1,4 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.37_OT%20Documented%20operating%20procedures.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.37-Documented-operating-procedures.md)
|
||||||
|
|
||||||
[[ISO_27002_2022_5.37_PE Documented operating procedures \|Plain English]]
|
[[ISO_27002_2022_5.37_PE Documented operating procedures \|Plain English]]
|
||||||
ISO 27002:2013: 12.1.1
|
ISO 27002:2013: 12.1.1
|
||||||
|
|
|
||||||
|
|
@ -1,6 +1,6 @@
|
||||||
# About Control 5.3: Segregation of duties
|
# About Control 5.3: Segregation of duties
|
||||||
|
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.3_OT%20Segregation%20of%20duties.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.3-Segregation-of-duties.md)
|
||||||
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_5.3_PE%20Segregation%20of%20duties.md)
|
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_5.3_PE%20Segregation%20of%20duties.md)
|
||||||
ISO 27002:2013: 06.1.2
|
ISO 27002:2013: 06.1.2
|
||||||
|
|
||||||
|
|
|
||||||
|
|
@ -1,6 +1,6 @@
|
||||||
# About Control 5.4: Management responsibilities
|
# About Control 5.4: Management responsibilities
|
||||||
|
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.4_OT%20Management%20responsibilities.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.4-Management-responsibilities.md)
|
||||||
[[ISO_27002_2022_5.4_PE Management responsibilities \|Plain English]]
|
[[ISO_27002_2022_5.4_PE Management responsibilities \|Plain English]]
|
||||||
ISO 27002:2013: 07.2.1
|
ISO 27002:2013: 07.2.1
|
||||||
|
|
||||||
|
|
|
||||||
|
|
@ -1,6 +1,6 @@
|
||||||
# About Control 5.5: Contact with authorities
|
# About Control 5.5: Contact with authorities
|
||||||
|
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.5_OT%20Contact%20with%20authorities.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.5-Contact-with-authorities.md)
|
||||||
[[ISO_27002_2022_5.5_PE Contact with authorities \|Plain English]]
|
[[ISO_27002_2022_5.5_PE Contact with authorities \|Plain English]]
|
||||||
ISO 27002:2013: 06.1.3
|
ISO 27002:2013: 06.1.3
|
||||||
|
|
||||||
|
|
|
||||||
|
|
@ -1,6 +1,6 @@
|
||||||
# About Control 5.6: Contact with special interest groups
|
# About Control 5.6: Contact with special interest groups
|
||||||
|
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.6_OT%20Contact%20with%20special%20interest%20groups.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.6-Contact-with-special-interest-groups.md)
|
||||||
[[ISO_27002_2022_5.6_PE Contact with special interest groups \|Plain English]]
|
[[ISO_27002_2022_5.6_PE Contact with special interest groups \|Plain English]]
|
||||||
ISO 27002:2013: 6.1.4
|
ISO 27002:2013: 6.1.4
|
||||||
|
|
||||||
|
|
|
||||||
|
|
@ -1,6 +1,6 @@
|
||||||
# About control 5.7: Threat intelligence
|
# About control 5.7: Threat intelligence
|
||||||
|
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.7_OT%20Threat%20intelligence.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.7-Threat-intelligence.md)
|
||||||
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_5.7_PE%20Threat%20intelligence.md)
|
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_5.7_PE%20Threat%20intelligence.md)
|
||||||
|
|
||||||
ISO 27002:2013: n/a
|
ISO 27002:2013: n/a
|
||||||
|
|
|
||||||
|
|
@ -1,4 +1,4 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.8_OT%20Information%20security%20in%20project%20management.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.8-Information-security-in-project-management.md)
|
||||||
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_5.8_PE%20Information%20security%20in%20project%20management.md)
|
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_5.8_PE%20Information%20security%20in%20project%20management.md)
|
||||||
ISO 27002:2013: 06.1.5, 14.1.1
|
ISO 27002:2013: 06.1.5, 14.1.1
|
||||||
|
|
||||||
|
|
|
||||||
|
|
@ -1,6 +1,6 @@
|
||||||
# Control 5.9 Inventory of information and other associated assets
|
# Control 5.9 Inventory of information and other associated assets
|
||||||
|
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.9_OT%20Inventory%20of%20information%20and%20other%20associated%20assets.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-5.9-Inventory-of-information-and-other-associated-assets.md)
|
||||||
[[ISO_27002_2022_5.9_PE Inventory of information and other associated assets \|Plain English]]
|
[[ISO_27002_2022_5.9_PE Inventory of information and other associated assets \|Plain English]]
|
||||||
ISO 27002:2013: 08.1.1, 08.1.2
|
ISO 27002:2013: 08.1.1, 08.1.2
|
||||||
|
|
||||||
|
|
|
||||||
|
|
@ -1,4 +1,4 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_6.1_OT%20Screening.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-6.1-Screening.md)
|
||||||
|
|
||||||
[[ISO_27002_2022_6.1_PE Screening \|Plain English]]
|
[[ISO_27002_2022_6.1_PE Screening \|Plain English]]
|
||||||
ISO 27002:2013: 07.1.1
|
ISO 27002:2013: 07.1.1
|
||||||
|
|
|
||||||
|
|
@ -1,4 +1,4 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_6.2_OT%20Terms%20and%20conditions%20of%20employment.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-6.2-Terms-and-conditions-of-employment.md)
|
||||||
|
|
||||||
[[ISO_27002_2022_6.2_PE Terms and conditions of employment \|Plain English]]
|
[[ISO_27002_2022_6.2_PE Terms and conditions of employment \|Plain English]]
|
||||||
ISO 27002:2013: 07.1.2
|
ISO 27002:2013: 07.1.2
|
||||||
|
|
|
||||||
|
|
@ -1,4 +1,4 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_6.3_OT%20Information%20security%20awareness,%20education%20and%20training.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-6.3-Information-security-awareness-education-and-training.md)
|
||||||
|
|
||||||
[[ISO_27002_2022_6.3_PE Information security awareness, education and training \|Plain English]]
|
[[ISO_27002_2022_6.3_PE Information security awareness, education and training \|Plain English]]
|
||||||
ISO 27002:2013: 07.2.2
|
ISO 27002:2013: 07.2.2
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_6.4_OT%20Disciplinary%20process.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-6.4-Disciplinary-process.md)
|
||||||
[[ISO_27002_2022_6.4_PE Disciplinary process \|Plain English]]
|
[[ISO_27002_2022_6.4_PE Disciplinary process \|Plain English]]
|
||||||
ISO 27002:2013: 07.2.3
|
ISO 27002:2013: 07.2.3
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_6.5_OT%20Responsibilities%20after%20termination%20or%20change%20of%20employment.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-6.5-Responsibilities-after-termination-or-change-of-employment.md)
|
||||||
[[ISO_27002_2022_6.5_PE Responsibilities after termination or change of employment \|Plain English]]
|
[[ISO_27002_2022_6.5_PE Responsibilities after termination or change of employment \|Plain English]]
|
||||||
ISO 27002:2013: 07.3.1
|
ISO 27002:2013: 07.3.1
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_6.6_OT%20Confidentiality%20or%20non-disclosure%20agreements.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-6.6-Confidentiality-or-non-disclosure-agreements.md)
|
||||||
[[ISO_27002_2022_6.6_PE Confidentiality or non-disclosure agreements \|Plain English]]
|
[[ISO_27002_2022_6.6_PE Confidentiality or non-disclosure agreements \|Plain English]]
|
||||||
ISO 27002:2013: 13.2.4
|
ISO 27002:2013: 13.2.4
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_6.7_OT%20Remote%20working.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-6.7-Remote-working.md)
|
||||||
[[ISO_27002_2022_6.7_PE Remote working \|Plain English]]
|
[[ISO_27002_2022_6.7_PE Remote working \|Plain English]]
|
||||||
ISO 27002:2013: 06.2.2
|
ISO 27002:2013: 06.2.2
|
||||||
|
|
|
||||||
|
|
@ -1,4 +1,4 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_6.8_OT%20Information%20security%20event%20reporting.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-6.8-Information-security-event-reporting.md)
|
||||||
|
|
||||||
[[ISO_27002_2022_6.8_PE Information security event reporting \|Plain English]]
|
[[ISO_27002_2022_6.8_PE Information security event reporting \|Plain English]]
|
||||||
ISO 27002:2013: 16.1.2, 16.1.3
|
ISO 27002:2013: 16.1.2, 16.1.3
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_7.10_OT%20Storage%20media.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-7.10-Storage-media.md)
|
||||||
[[ISO_27002_2022_7.10_PE Storage media \|Plain English]]
|
[[ISO_27002_2022_7.10_PE Storage media \|Plain English]]
|
||||||
ISO 27002:2013: 08.3.1, 08.3.2, 08.3.3, 11.2.5
|
ISO 27002:2013: 08.3.1, 08.3.2, 08.3.3, 11.2.5
|
||||||
|
|
|
||||||
|
|
@ -2,6 +2,6 @@
|
||||||
|
|
||||||
Protecting information processing facilities from power failures and other utilities disruptions.
|
Protecting information processing facilities from power failures and other utilities disruptions.
|
||||||
|
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_7.11_OT%20Supporting%20utilities.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-7.11-Supporting-utilities.md)
|
||||||
[[ISO_27002_2022_7.11_PE Supporting utilities \|Plain English]]
|
[[ISO_27002_2022_7.11_PE Supporting utilities \|Plain English]]
|
||||||
ISO 27002:2013: 11.2.2
|
ISO 27002:2013: 11.2.2
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_7.12_OT%20Cabling%20security.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-7.12-Cabling-security.md)
|
||||||
[[ISO_27002_2022_7.12_PE Cabling security \|Plain English]]
|
[[ISO_27002_2022_7.12_PE Cabling security \|Plain English]]
|
||||||
ISO 27002:2013: 11.2.3
|
ISO 27002:2013: 11.2.3
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_7.13_OT%20Equipment%20maintenance.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-7.13-Equipment-maintenance.md)
|
||||||
[[ISO_27002_2022_7.13_PE Equipment maintenance \|Plain English]]
|
[[ISO_27002_2022_7.13_PE Equipment maintenance \|Plain English]]
|
||||||
ISO 27002:2013: 11.2.4
|
ISO 27002:2013: 11.2.4
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_7.14_OT%20Secure%20disposal%20or%20re-use%20of%20equipment.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-7.14-Secure-disposal-or-re-use-of-equipment.md)
|
||||||
[[ISO_27002_2022_7.14_PE Secure disposal or re-use of equipment \|Plain English]]
|
[[ISO_27002_2022_7.14_PE Secure disposal or re-use of equipment \|Plain English]]
|
||||||
ISO 27002:2013: 11.2.7
|
ISO 27002:2013: 11.2.7
|
||||||
|
|
|
||||||
|
|
@ -1,6 +1,6 @@
|
||||||
# About control 7.1: Physical security perimeters
|
# About control 7.1: Physical security perimeters
|
||||||
|
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_7.1_OT%20Physical%20security%20perimeters.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-7.1-Physical-security-perimeters.md)
|
||||||
[[ISO_27002_2022_7.1_PE Physical security perimeters \|Plain English]]
|
[[ISO_27002_2022_7.1_PE Physical security perimeters \|Plain English]]
|
||||||
ISO 27002:2013: 11.1.1
|
ISO 27002:2013: 11.1.1
|
||||||
|
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_7.2_OT%20Physical%20entry.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-7.2-Physical-entry.md)
|
||||||
[[ISO_27002_2022_7.2_PE Physical entry \|Plain English]]
|
[[ISO_27002_2022_7.2_PE Physical entry \|Plain English]]
|
||||||
ISO 27002:2013: 11.1.2, 11.1.6
|
ISO 27002:2013: 11.1.2, 11.1.6
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_7.3_OT%20Securing%20offices,%20rooms%20and%20facilities.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-7.3-Securing-offices-rooms-and-facilities.md)
|
||||||
[[ISO_27002_2022_7.3_PE Securing offices, rooms and facilities \|Plain English]]
|
[[ISO_27002_2022_7.3_PE Securing offices, rooms and facilities \|Plain English]]
|
||||||
ISO 27002:2013: 11.1.3
|
ISO 27002:2013: 11.1.3
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_7.4_OT%20Physical%20security%20monitoring.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-7.4-Physical-security-monitoring.md)
|
||||||
[[ISO_27002_2022_7.4_PE Physical security monitoring \|Plain English]]
|
[[ISO_27002_2022_7.4_PE Physical security monitoring \|Plain English]]
|
||||||
ISO 27002:2013: n/a
|
ISO 27002:2013: n/a
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_7.5_OT%20Protecting%20against%20physical%20and%20environmental%20threats.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-7.5-Protecting-against-physical-and-environmental-threats.md)
|
||||||
[[ISO_27002_2022_7.5_PE Protecting against physical and environmental threats \|Plain English]]
|
[[ISO_27002_2022_7.5_PE Protecting against physical and environmental threats \|Plain English]]
|
||||||
ISO 27002:2013: 11.1.4
|
ISO 27002:2013: 11.1.4
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_7.6_OT%20Working%20in%20secure%20areas.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-7.6-Working-in-secure-areas.md)
|
||||||
[[ISO_27002_2022_7.6_PE Working in secure areas \|Plain English]]
|
[[ISO_27002_2022_7.6_PE Working in secure areas \|Plain English]]
|
||||||
ISO 27002:2013: 11.1.5
|
ISO 27002:2013: 11.1.5
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_7.7_OT%20Clear%20desk%20and%20clear%20screen.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-7.7-Clear-desk-and-clear-screen.md)
|
||||||
[[ISO_27002_2022_7.7_PE Clear desk and clear screen \|Plain English]]
|
[[ISO_27002_2022_7.7_PE Clear desk and clear screen \|Plain English]]
|
||||||
ISO 27002:2013: 11.2.9
|
ISO 27002:2013: 11.2.9
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_7.8_OT%20Equipment%20siting%20and%20protection.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-7.8-Equipment-siting-and-protection.md)
|
||||||
[[ISO_27002_2022_7.8_PE Equipment siting and protection \|Plain English]]
|
[[ISO_27002_2022_7.8_PE Equipment siting and protection \|Plain English]]
|
||||||
ISO 27002:2013: 11.2.1
|
ISO 27002:2013: 11.2.1
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_7.9_OT%20Security%20of%20assets%20off-premises.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-7.9-Security-of-assets-off-premises.md)
|
||||||
[[ISO_27002_2022_7.9_PE Security of assets off-premises \|Plain English]]
|
[[ISO_27002_2022_7.9_PE Security of assets off-premises \|Plain English]]
|
||||||
ISO 27002:2013: 11.2.6
|
ISO 27002:2013: 11.2.6
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.10_OT%20Information%20deletion.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.10-Information-deletion.md)
|
||||||
[[ISO_27002_2022_8.10_PE Information deletion \|Plain English]]
|
[[ISO_27002_2022_8.10_PE Information deletion \|Plain English]]
|
||||||
ISO 27002:2013: n/a
|
ISO 27002:2013: n/a
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.11_OT%20Data%20masking.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.11-Data-masking.md)
|
||||||
[[ISO_27002_2022_8.11_PE Data masking \|Plain English]]
|
[[ISO_27002_2022_8.11_PE Data masking \|Plain English]]
|
||||||
ISO 27002:2013: n/a
|
ISO 27002:2013: n/a
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.12_OT%20Data%20leakage%20prevention.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.12-Data-leakage-prevention.md)
|
||||||
[[ISO_27002_2022_8.12_PE Data leakage prevention \|Plain English]]
|
[[ISO_27002_2022_8.12_PE Data leakage prevention \|Plain English]]
|
||||||
ISO 27002:2013: n/a
|
ISO 27002:2013: n/a
|
||||||
|
|
|
||||||
|
|
@ -1,4 +1,4 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.13_OT%20Information%20backup.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.13-Information-backup.md)
|
||||||
|
|
||||||
[[ISO_27002_2022_8.13_PE Information backup \|Plain English]]
|
[[ISO_27002_2022_8.13_PE Information backup \|Plain English]]
|
||||||
ISO 27002:2013: 12.3.1
|
ISO 27002:2013: 12.3.1
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.14_OT%20Redundancy%20of%20information%20processing%20facilities.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.14-Redundancy-of-information-processing-facilities.md)
|
||||||
[[ISO_27002_2022_8.14_PE Redundancy of information processing facilities \|Plain English]]
|
[[ISO_27002_2022_8.14_PE Redundancy of information processing facilities \|Plain English]]
|
||||||
ISO 27002:2013: 17.2.1
|
ISO 27002:2013: 17.2.1
|
||||||
|
|
|
||||||
|
|
@ -1,4 +1,4 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.15_OT%20Logging.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.15-Logging.md)
|
||||||
[[ISO_27002_2022_8.15_PE Logging\|Plain English]]
|
[[ISO_27002_2022_8.15_PE Logging\|Plain English]]
|
||||||
|
|
||||||
ISO 27002:2013:
|
ISO 27002:2013:
|
||||||
|
|
|
||||||
|
|
@ -1,4 +1,4 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.16_OT%20Monitoring%20activities.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.16-Monitoring-activities.md)
|
||||||
|
|
||||||
[[ISO_27002_2022_8.16_PE Monitoring activities \|Plain English]]
|
[[ISO_27002_2022_8.16_PE Monitoring activities \|Plain English]]
|
||||||
ISO 27002:2013: n/a
|
ISO 27002:2013: n/a
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.17_OT%20Clock%20synchronization.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.17-Clock-synchronization.md)
|
||||||
[[ISO_27002_2022_8.17_PE Clock synchronization \|Plain English]]
|
[[ISO_27002_2022_8.17_PE Clock synchronization \|Plain English]]
|
||||||
ISO 27002:2013: 12.4.4
|
ISO 27002:2013: 12.4.4
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.18_OT%20Use%20of%20privileged%20utility%20programs.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.18-Use-of-privileged-utility-programs.md)
|
||||||
[[ISO_27002_2022_8.18_PE Use of privileged utility programs \|Plain English]]
|
[[ISO_27002_2022_8.18_PE Use of privileged utility programs \|Plain English]]
|
||||||
ISO 27002:2013: 09.4.4
|
ISO 27002:2013: 09.4.4
|
||||||
|
|
|
||||||
|
|
@ -1,4 +1,4 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.19_OT%20Installation%20of%20software%20on%20operational%20systems.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.19-Installation-of-software-on-operational-systems.md)
|
||||||
|
|
||||||
[[ISO_27002_2022_8.19_PE Installation of software on operational systems \|Plain English]]
|
[[ISO_27002_2022_8.19_PE Installation of software on operational systems \|Plain English]]
|
||||||
ISO 27002:2013: 12.5.1, 12.6.2
|
ISO 27002:2013: 12.5.1, 12.6.2
|
||||||
|
|
|
||||||
|
|
@ -1,4 +1,4 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.1_OT%20User%20endpoint%20devices.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.1-User-endpoint-devices.md)
|
||||||
|
|
||||||
[[ISO_27002_2022_8.1_PE User endpoint devices \|Plain English]]
|
[[ISO_27002_2022_8.1_PE User endpoint devices \|Plain English]]
|
||||||
ISO 27002:2013: 06.2.1, 11.2.8
|
ISO 27002:2013: 06.2.1, 11.2.8
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.20_OT%20Networks%20security.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.20-Networks-security.md)
|
||||||
[[ISO_27002_2022_8.20_PE Networks security \|Plain English]]
|
[[ISO_27002_2022_8.20_PE Networks security \|Plain English]]
|
||||||
ISO 27002:2013: 13.1.1
|
ISO 27002:2013: 13.1.1
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.21_OT%20Security%20of%20network%20services.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.21-Security-of-network-services.md)
|
||||||
[[ISO_27002_2022_8.21_PE Security of network services \|Plain English]]
|
[[ISO_27002_2022_8.21_PE Security of network services \|Plain English]]
|
||||||
ISO 27002:2013: 13.1.2
|
ISO 27002:2013: 13.1.2
|
||||||
|
|
|
||||||
|
|
@ -1,4 +1,4 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.22_OT%20Segregation%20of%20networks.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.22-Segregation-of-networks.md)
|
||||||
|
|
||||||
[[ISO_27002_2022_8.22_PE Segregation of networks \|Plain English]]
|
[[ISO_27002_2022_8.22_PE Segregation of networks \|Plain English]]
|
||||||
ISO 27002:2013: 13.1.3
|
ISO 27002:2013: 13.1.3
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.23_OT%20Web%20filtering.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.23-Web-filtering.md)
|
||||||
[[ISO_27002_2022_8.23_PE Web filtering \|Plain English]]
|
[[ISO_27002_2022_8.23_PE Web filtering \|Plain English]]
|
||||||
ISO 27002:2013: n/a
|
ISO 27002:2013: n/a
|
||||||
|
|
|
||||||
|
|
@ -1,4 +1,4 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.24_OT%20Use%20of%20cryptography.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.24-Use-of-cryptography.md)
|
||||||
|
|
||||||
[[ISO_27002_2022_8.24_PE Use of cryptography \|Plain English]]
|
[[ISO_27002_2022_8.24_PE Use of cryptography \|Plain English]]
|
||||||
ISO 27002:2013: 10.1.1, 10.1.2
|
ISO 27002:2013: 10.1.1, 10.1.2
|
||||||
|
|
|
||||||
|
|
@ -1,4 +1,4 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.25_OT%20Secure%20development%20life%20cycle.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.25-Secure-development-life-cycle.md)
|
||||||
[[ISO_27002_2022_8.25_PE Secure development life cycle \|Plain English]]
|
[[ISO_27002_2022_8.25_PE Secure development life cycle \|Plain English]]
|
||||||
ISO 27002:2013: 14.2.1
|
ISO 27002:2013: 14.2.1
|
||||||
|
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.26_OT%20Application%20security%20requirements.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.26-Application-security-requirements.md)
|
||||||
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_8.26_PE%20Application%20security%20requirements.md)
|
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_8.26_PE%20Application%20security%20requirements.md)
|
||||||
ISO 27002:2013: 14.1.2, 14.1.3
|
ISO 27002:2013: 14.1.2, 14.1.3
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.27_OT%20Secure%20system%20architecture%20and%20engineering%20principles.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.27-Secure-system-architecture-and-engineering-principles.md)
|
||||||
[[ISO_27002_2022_8.27_PE Secure system architecture and engineering principles \|Plain English]]
|
[[ISO_27002_2022_8.27_PE Secure system architecture and engineering principles \|Plain English]]
|
||||||
ISO 27002:2013: 14.2.5
|
ISO 27002:2013: 14.2.5
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.28_OT%20Secure%20coding.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.28-Secure-coding.md)
|
||||||
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_8.28_PE%20Secure%20coding.md)
|
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_8.28_PE%20Secure%20coding.md)
|
||||||
ISO 27002:2013: n/a
|
ISO 27002:2013: n/a
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.29_OT%20Security%20testing%20in%20development%20and%20acceptance.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.29-Security-testing-in-development-and-acceptance.md)
|
||||||
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_8.29_PE%20Security%20testing%20in%20development%20and%20acceptance.md)
|
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_8.29_PE%20Security%20testing%20in%20development%20and%20acceptance.md)
|
||||||
ISO 27002:2013: 14.2.8, 14.2.9
|
ISO 27002:2013: 14.2.8, 14.2.9
|
||||||
|
|
|
||||||
|
|
@ -2,7 +2,7 @@
|
||||||
|
|
||||||
Managing privileged access rights.
|
Managing privileged access rights.
|
||||||
|
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.2_OT%20Privileged%20access%20rights.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.2-Privileged-access-rights.md)
|
||||||
[[ISO_27002_2022_8.2_PE Privileged access rights \|Plain English]]
|
[[ISO_27002_2022_8.2_PE Privileged access rights \|Plain English]]
|
||||||
ISO 27002:2013: 09.2.3
|
ISO 27002:2013: 09.2.3
|
||||||
|
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.30_OT%20Outsourced%20development.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.30-Outsourced-development.md)
|
||||||
[[ISO_27002_2022_8.30_PE Outsourced development \|Plain English]]
|
[[ISO_27002_2022_8.30_PE Outsourced development \|Plain English]]
|
||||||
ISO 27002:2013: 14.2.7
|
ISO 27002:2013: 14.2.7
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.31_OT%20Separation%20of%20development,%20test%20and%20production%20environments.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.31-Separation-of-development-test-and-production-environments.md)
|
||||||
[[ISO_27002_2022_8.31_PE Separation of development, test and production environments \|Plain English]]
|
[[ISO_27002_2022_8.31_PE Separation of development, test and production environments \|Plain English]]
|
||||||
ISO 27002:2013: 12.1.4, 14.2.6
|
ISO 27002:2013: 12.1.4, 14.2.6
|
||||||
|
|
|
||||||
|
|
@ -1,4 +1,4 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.32_OT%20Change%20management.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.32-Change-management.md)
|
||||||
[[ISO_27002_2022_8.32_PE Change management \|Plain English]]
|
[[ISO_27002_2022_8.32_PE Change management \|Plain English]]
|
||||||
ISO 27002:2013: 12.1.2, 14.2.2, 14.2.3, 14.2.4
|
ISO 27002:2013: 12.1.2, 14.2.2, 14.2.3, 14.2.4
|
||||||
|
|
||||||
|
|
|
||||||
|
|
@ -1,5 +1,5 @@
|
||||||
# About Control 8.33: Test information
|
# About Control 8.33: Test information
|
||||||
|
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.33_OT%20Test%20information.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.33-Test-information.md)
|
||||||
[[ISO_27002_2022_8.33_PE Test information \|Plain English]]
|
[[ISO_27002_2022_8.33_PE Test information \|Plain English]]
|
||||||
ISO 27002:2013: 14.3.1
|
ISO 27002:2013: 14.3.1
|
||||||
|
|
|
||||||
|
|
@ -1,6 +1,6 @@
|
||||||
# About control 8.34: Protection of information systems during audit testing
|
# About control 8.34: Protection of information systems during audit testing
|
||||||
|
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.34_OT%20Protection%20of%20information%20systems%20during%20audit%20testing.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.34-Protection-of-information-systems-during-audit-testing.md)
|
||||||
Plain English
|
Plain English
|
||||||
|
|
||||||
ISO 27002:2013: 12.7.1
|
ISO 27002:2013: 12.7.1
|
||||||
|
|
|
||||||
|
|
@ -1,3 +1,3 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.34_OT%20Protection%20of%20information%20systems%20during%20audit%20testing.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.34-Protection-of-information-systems-during-audit-testing.md)
|
||||||
[[ISO_27002_2022_8.34_PE Protection of information systems during audit testing \|Plain English]]
|
[[ISO_27002_2022_8.34_PE Protection of information systems during audit testing \|Plain English]]
|
||||||
ISO 27002:2013: 12.7.1
|
ISO 27002:2013: 12.7.1
|
||||||
|
|
|
||||||
|
|
@ -2,9 +2,9 @@
|
||||||
|
|
||||||
Restricting access to information assets in line with the access control policy.
|
Restricting access to information assets in line with the access control policy.
|
||||||
|
|
||||||
Control 8.3 operationalizes the foundational rules set in [A5.15](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_5.15_OT%20Access%20control.md) by implementing detailed technical measures.
|
Control 8.3 operationalizes the foundational rules set in [A5.15](../ISO-27002-OST/ISO27002-EN-2022/a-5.15-Access-control.md) by implementing detailed technical measures.
|
||||||
|
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.3_OT%20Information%20access%20restriction.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.3-Information-access-restriction.md)
|
||||||
[[ISO_27002_2022_8.3_PE Title \|Plain English]]
|
[[ISO_27002_2022_8.3_PE Title \|Plain English]]
|
||||||
ISO 27002:2013: 09.4.1
|
ISO 27002:2013: 09.4.1
|
||||||
|
|
||||||
|
|
|
||||||
|
|
@ -1,6 +1,6 @@
|
||||||
# About Control 8.5: Secure authentication
|
# About Control 8.5: Secure authentication
|
||||||
|
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.5_OT%20Secure%20authentication.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.5-Secure-authentication.md)
|
||||||
[[ISO_27002_2022_8.5_PE Secure authentication \|Plain English]]
|
[[ISO_27002_2022_8.5_PE Secure authentication \|Plain English]]
|
||||||
ISO 27002:2013: 09.4.2
|
ISO 27002:2013: 09.4.2
|
||||||
|
|
||||||
|
|
|
||||||
|
|
@ -1,5 +1,5 @@
|
||||||
|
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.6_OT%20Capacity%20management.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.6-Capacity-management.md)
|
||||||
[[ISO_27002_2022_8.6_PE Title \|Plain English]]
|
[[ISO_27002_2022_8.6_PE Title \|Plain English]]
|
||||||
ISO 27002:2013: 12.1.3
|
ISO 27002:2013: 12.1.3
|
||||||
|
|
||||||
|
|
|
||||||
|
|
@ -1,4 +1,4 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.7_OT%20Protection%20against%20malware.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.7-Protection-against-malware.md)
|
||||||
|
|
||||||
[[ISO_27002_2022_8.7_PE Protection against malware \|Plain English]]
|
[[ISO_27002_2022_8.7_PE Protection against malware \|Plain English]]
|
||||||
ISO 27002:2013: 12.2.1
|
ISO 27002:2013: 12.2.1
|
||||||
|
|
|
||||||
|
|
@ -1,6 +1,6 @@
|
||||||
# About Control 8.8: Management of technical vulnerabilities
|
# About Control 8.8: Management of technical vulnerabilities
|
||||||
|
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.8_OT%20Management%20of%20technical%20vulnerabilities.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.8-Management-of-technical-vulnerabilities.md)
|
||||||
|
|
||||||
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_8.8_PE%20Management%20of%20technical%20vulnerabilities.md)
|
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_8.8_PE%20Management%20of%20technical%20vulnerabilities.md)
|
||||||
ISO 27002:2013: 12.6.1, 18.2.3
|
ISO 27002:2013: 12.6.1, 18.2.3
|
||||||
|
|
|
||||||
|
|
@ -1,4 +1,4 @@
|
||||||
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/ISO_27002_2022_8.9_OT%20Configuration%20management.md)
|
[Original Text](../ISO-27002-OST/ISO27002-EN-2022/a-8.9-Configuration-management.md)
|
||||||
|
|
||||||
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_8.9_PE%20Configuration%20management.md)
|
[Plain English](../../../../iso27DIY-gis/reference/Paraphrased/ISO27002-2022-EN/ISO_27002_2022_8.9_PE%20Configuration%20management.md)
|
||||||
ISO 27002:2013: n/a
|
ISO 27002:2013: n/a
|
||||||
|
|
|
||||||
Loading…
Add table
Add a link
Reference in a new issue