ISO27001 Legal Register Beginner’s Guide

ISO27001 Legal Register Beginner's Guide

The ISO 27001 legal and contractual register is used to identify which laws apply to your organisation, what contractual requirements customers have placed on you, what regulatory requirements there maybe and what standards you are working towards. It is used to evidence that they have been reviewed, agreed and signed off and to show when they will next be reviewed. All of these will inform and influence your information security management system.

ISO27001 Legal and Contractual Requirements Register-Black

The ISO 27001 legal register template can save a lot of time, being prewritten and pre filled with best practice.

ISO 27001 Annex A 5.31 Legal, statutory, regulatory and contractual requirements requires a legal register. It states

‘Legal, statutory, regulatory and contractual requirements relevant to information security and the organization’s approach to meet these requirements should be identified, documented and kept up to date.’

ISO 27001 Annex A 5.31

In this short tutorial we show you how to create and use a legal and contractual register yourself.

What is an ISO 27001 legal and contractual register?

It is a document that lists the applicable laws and customer contractual requirements on your organisation.

Why use an ISO 27001 legal and contractual register?

It is used to show what laws and contractual requirements apply to your organisation and evidences that you are aware of them and have reviewed them. These will inform and influence your information security management system.

What does an ISO 27001 legal and contractual register include?

It includes a list of laws and customer requirements on information security that apply to your organisation with the date they were last reviewed and the date they will next be reviewed.

Where can I download a legal and contractual register?

A legal and contractual register template can be downloaded here: https://hightable.io/product/legal-and-contractual-requirements-register/

What ISO 27001 clause requires and ISO 27001 legal register?

ISO 27001 Annex A 5.31 Legal, statutory, regulatory and contractual requirements requires a legal register. It states’ Legal, statutory, regulatory and contractual requirements relevant to information security and the organization’s approach to meet these requirements should be identified, documented and kept up to date.’

ISO 27001 Templates Toolkit Business Edition Black
ISO27001 Policy Templates Pack Green

FREE 30 minute ISO27001 strategy session.

Claim your 100% FREE no-obligation 30 minute strategy session call (£1000 value). This is strictly for small businesses who are hungry to get ISO27001 certified up to 10x faster and 30x cheaper.

ISO27001 Certification Stragey Call
Shopping Cart