Skip to main content

๐Ÿ’ผ A.12 Operations security

  • Contextual name: ๐Ÿ’ผ A.12 Operations security
  • ID: /frameworks/iso-iec-27001-2013/12
  • Located in: ๐Ÿ’ผ ISO/IEC 27001:2013

Descriptionโ€‹

Empty...

Similarโ€‹

  • Internal
    • ID: dec-b-e71b177f

Sub Sectionsโ€‹

SectionSub SectionsInternal RulesPoliciesFlags
๐Ÿ’ผ A.12.1 Operational procedures and responsibilities4
ย ย ย ย ๐Ÿ’ผ A.12.1.1 Documented operating procedures
ย ย ย ย ๐Ÿ’ผ A.12.1.2 Change management
ย ย ย ย ๐Ÿ’ผ A.12.1.3 Capacity management
ย ย ย ย ๐Ÿ’ผ A.12.1.4 Separation of development, testing and operational environments
๐Ÿ’ผ A.12.2 Protection from malware1
ย ย ย ย ๐Ÿ’ผ A.12.2.1 Controls against malware77
๐Ÿ’ผ A.12.3 Backup1
ย ย ย ย ๐Ÿ’ผ A.12.3.1 Information backup
๐Ÿ’ผ A.12.4 Logging and monitoring4
ย ย ย ย ๐Ÿ’ผ A.12.4.1 Event logging1618
ย ย ย ย ๐Ÿ’ผ A.12.4.2 Protection of log information22
ย ย ย ย ๐Ÿ’ผ A.12.4.3 Administrator and operator logs89
ย ย ย ย ๐Ÿ’ผ A.12.4.4 Clock synchronisation
๐Ÿ’ผ A.12.5 Control of operational software1
ย ย ย ย ๐Ÿ’ผ A.12.5.1 Installation of software on operational systems44
๐Ÿ’ผ A.12.6 Technical vulnerability management2
ย ย ย ย ๐Ÿ’ผ A.12.6.1 Management of technical vulnerabilities77
ย ย ย ย ๐Ÿ’ผ A.12.6.2 Restrictions on software installation
๐Ÿ’ผ A.12.7 Information systems audit considerations1
ย ย ย ย ๐Ÿ’ผ A.12.7.1 Information systems audit controls