SG-10—Information Security Management System Scope
>Control Description
Information Security Management System (ISMS) boundaries are formally defined in an ISMS scoping document.
Theme
Process
Type
Preventive
Policy/Standard
Information Security Management Standard>Implementation Guidance
1. Ensure a process has been defined and documented to create an ISMS scoping document. 2. Ensure that this document is appropriately reviewed and updated to refelct accurate boundaries for the information security management system.
>Testing Procedure
1. Inspect and validate whether a process has been defined and documented to create an ISMS scoping document. 2. Validate whether this document was appropriately reviewed and updated.
>Audit Artifacts
E-SG-10
>Framework Mappings
Cross-framework mappings provided by Adobe CCF Open Source under Creative Commons License.
Ask AI
Configure your API key to use AI features.