Skip to main content

💼 A.12.5.1 Installation of software on operational systems

  • ID: /frameworks/iso-iec-27001-2013/12/05/01

Description

Procedures shall be implemented to control the installation of software on operational systems.

Similar

  • Internal
    • ID: dec-c-6d186bb8

Similar Sections (Give Policies To)

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 NIST CSF v1.1 → 💼 DE.CM-5: Unauthorized mobile code is detected1111no data
💼 NIST CSF v1.1 → 💼 ID.AM-2: Software platforms and applications within the organization are inventoried57no data
💼 NIST CSF v1.1 → 💼 PR.DS-6: Integrity checking mechanisms are used to verify software, firmware, and information integrity2226no data
💼 NIST CSF v1.1 → 💼 PR.IP-1: A baseline configuration of information technology/industrial control systems is created and maintained incorporating security principles (e.g. concept of least functionality)426no data
💼 NIST CSF v1.1 → 💼 PR.IP-3: Configuration change control processes are in place55no data

Sub Sections

SectionSub SectionsInternal RulesPoliciesFlagsCompliance

Policies (5)

PolicyLogic CountFlagsCompliance
🛡️ AWS DMS Replication Instance Auto Minor Version Upgrade is not enabled🟢1🟢 x6no data
🛡️ AWS RDS Instance Auto Minor Version Upgrade is not enabled🟠🟢1🟠 x1, 🟢 x6no data
🛡️ Azure App Service does not run the latest Java version🟢⚪🟢 x2, ⚪ x1no data
🛡️ Azure App Service does not run the latest PHP version🟢⚪🟢 x2, ⚪ x1no data
🛡️ Azure App Service does not run the latest Python version🟢⚪🟢 x2, ⚪ x1no data

Internal Rules

RulePoliciesFlags
✉️ dec-x-0d66ed991
✉️ dec-x-879aa9961
✉️ dec-x-215302da1
✉️ dec-x-a20e54a01
✉️ dec-x-f82b98491