Physical Security

The list of ISO 27001 Physical Security Controls.

Physical Security is an ISO 27001 operational capability.

Operational Capabilities is an attribute to view controls from a practitioner’s perspective of information security capabilities.

ISO 27001 attributes

ISO 27001 Attributes Explained

ISO 27001 Attributes Introduced in the 2022 update to the standard, in this ultimate guide to ISO 27001 Attributes you will learn What are ISO 27001 Attributes? ISO 27001 Attributes are a way to categorise, view and report on the ISO 27001 Annex A Controls. Why are ISO 27001 Attributes important? Attributes can be used […]

ISO 27001 Attributes Explained Read More »

ISO 27001 Annex A 7.14 Secure Disposal or Re-Use of Equipment

ISO 27001:2022 Annex A 7.14 Secure Disposal or Re-use of Equipment: The Lead Auditor’s Guide.

ISO 27001 Annex A 7.14 Secure Disposal or Re-use of Equipment is a security control that mandates the verification of storage media to ensure sensitive data and licensed software are securely overwritten or destroyed before hardware retirement. This process guarantees prevention of data leakage and maintains compliance with licensing agreements during the asset lifecycle termination

ISO 27001:2022 Annex A 7.14 Secure Disposal or Re-use of Equipment: The Lead Auditor’s Guide. Read More »

ISO 27001 Annex A 7.13 Equipment Maintenance

ISO 27001:2022 Annex A 7.13 Equipment Maintenance : The Lead Auditor’s Guide.

ISO 27001 Annex A 7.13 Equipment Maintenance is a security control that mandates organisations maintain hardware according to manufacturer specifications to prevent unauthorized access and data loss. Implementing this control ensures the availability and integrity of information assets by securing equipment during on-site servicing and off-site repairs. In this guide, I will show you exactly

ISO 27001:2022 Annex A 7.13 Equipment Maintenance : The Lead Auditor’s Guide. Read More »

ISO 27001 Annex A 7.12 Cabling Security

ISO 27001:2022 Annex A 7.12 Cabling Security: The Lead Auditor’s Guide.

ISO 27001 Annex A 7.12 Cabling Security is a security control that mandates the physical protection of power and telecommunications lines to prevent unauthorized interception, interference, or damage. Ideally, organizations must ensure physical segregation of power and data cables to prevent corruption. This implementation safeguards the confidentiality and availability of information traversing the physical network

ISO 27001:2022 Annex A 7.12 Cabling Security: The Lead Auditor’s Guide. Read More »

ISO 27001 Annex A 7.11 Supporting Utilities

ISO 27001:2022 Annex A 7.11 Supporting Utilities: The Lead Auditor’s Guide.

ISO 27001 Annex A 7.11 Supporting Utilities is a security control that mandates the protection of information processing facilities from power failures and environmental disruptions. To comply, organizations must implement redundant power supplies (UPS) and diverse utility routing, ensuring continuous availability of critical systems and preventing data corruption during outages. In this guide, I will

ISO 27001:2022 Annex A 7.11 Supporting Utilities: The Lead Auditor’s Guide. Read More »

ISO 27001 Annex A 7.10 Storage media

ISO 27001:2022 Annex A 7.10 Storage Media: The Lead Auditor’s Guide.

ISO 27001 Annex A 7.10 Storage Media is a security control that mandates the lifecycle management of physical and removable drives to prevent data leakage. It requires organizations to implement mandatory encryption and secure disposal procedures, ensuring sensitive data on USBs and hard drives remains protected against theft, delivering the Business Benefit of verifiable data

ISO 27001:2022 Annex A 7.10 Storage Media: The Lead Auditor’s Guide. Read More »

ISO 27001 Annex A 7.9 Security of assets off-premises

ISO 27001:2022 Annex A 7.9 Security of Assets Off-Premises: The Lead Auditor’s Guide.

ISO 27001 Annex A 7.9 Security of Assets Off-Premises is a security control that mandates the protection of hardware and information outside the organization’s physical perimeter. It requires risk-based safeguards, such as full-disk encryption and physical supervision, to prevent theft, loss, or unauthorized access, ensuring business continuity during remote work operations. In this guide, I

ISO 27001:2022 Annex A 7.9 Security of Assets Off-Premises: The Lead Auditor’s Guide. Read More »

Shopping Basket
Scroll to Top