Self-assessmentISO/IEC 27002:2022

ISO/IEC 27002:2022 — Information security controls

Self-assessment of information security controls (organisational, people, physical and technological) serving as a reference for the Statement of Applicability of an ISMS.

control points
55
anchored clauses
35
Clauses covered
4

Clauses covered

Organisational controls125.1 · 5.8 · 5.2-5.4 · 5.5-5.7 · 5.9-5.11 · 5.12-5.14 · 5.15-5.18 · 5.19-5.23 · 5.24-5.28 · 5.29-5.30 · 5.31-5.34 · 5.35-5.37
People controls46.1-6.2 · 6.3-6.4 · 6.5-6.6 · 6.7-6.8
Physical controls57.1-7.3 · 7.4-7.5 · 7.6-7.7 · 7.8-7.12 · 7.13-7.14
Technological controls148.1-8.2 · 8.3-8.5 · 8.6-8.7 · 8.8-8.9 · 8.10-8.12 · 8.13-8.15 · 8.16-8.17 · 8.18-8.19 · 8.20-8.22 · 8.23-8.24 · 8.25-8.26 · 8.27-8.29 · 8.30-8.32 · 8.33-8.34

Scale

ImplementedPartially implementedNot implementedNot applicable

This template is used inside the platform: every finding becomes a corrective action tracked through to its evidence — something a printed grid cannot do.

Use this template

14-day trial, no credit card. The template opens in your workspace.

How this grid is built

Every control point is written in our own words, then tied to the standard's clause number. The normative text is never reproduced: the standard itself remains to be purchased from the body that publishes it. Grids are reviewed at every new edition of a standard.

Published by NormePulse — HEMC, management consulting firmUpdated

Related templates