ISO 27002

Noun · Security & Infosec

Definitions

  1. A companion international standard that provides guidance on information security controls supporting an ISO 27001-style management system. Where ISO 27001 defines requirements, ISO 27002 gives more practical control guidance and implementation detail.

    In plain English: A companion security standard that gives detailed guidance on security controls.

    Example: "The team used ISO 27002 to interpret which control practices best fit the risks identified under ISO 27001."

Related Terms