Iso/iec 27002:2013 Instant

Internal organization and mobile/teleworking.

is an international standard that serves as a detailed "code of practice" for organizations looking to establish, implement, or maintain an Information Security Management System (ISMS). While ISO/IEC 27001 defines the requirements for an ISMS, ISO/IEC 27002 provides the how-to —the specific implementation guidance for the controls listed in Annex A of ISO 27001. 1. Structural Overview ISO/IEC 27002:2013

Security in lifecycle processes.

Detailed instructions on the practical steps needed to satisfy the control. Internal organization and mobile/teleworking

While you cannot "certify" against 27002 alone, it is the primary guide for passing ISO 27001 certification audits . ISO/IEC 27002:2013