Skip to main content

💼 A.18.1.1 Identification of applicable legislation and contractual requirements

  • ID: /frameworks/iso-iec-27001-2013/18/01/01

Description​

All relevant legislative statutory, regulatory, contractual requirements and the organization’s approach to meet these requirements shall be explicitly identified, documented and kept up to date for each information system and the organization.

Similar​

  • Internal
    • ID: dec-c-859f677b

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 NIST CSF v1.1 → 💼 ID.GV-3: Legal and regulatory requirements regarding cybersecurity, including privacy and civil liberties obligations, are understood and managed14no data

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlagsCompliance