A.5.36
    Organizational Controls

    Compliance with policies, rules and standards for information security

    Compliance with the organization's information security policy, topic-specific policies, rules and standards should be regularly reviewed.

    Purpose

    To ensure conformity with organizational information security policies and standards.

    Implementation Guidance

    Conduct regular compliance reviews

    Use automated tools to monitor compliance where possible

    Document compliance status and exceptions

    Address non-compliance issues promptly

    Report compliance status to management

    Recommended Tools

    ISO 27001 Services from the Directory

    These providers can help you implement A.5.36 and achieve ISO 27001 certification.

    By the team behind ISMS Directory

    Implementing A.5.36 for a client?

    ISMS Copilot drafts policies, evidence, and SoA wording for A.5.36 Compliance with policies, rules and standards for information security. Built for compliance professionals.

    Try ISMS Copilot free