A.7.7
    Physical Controls

    Clear desk and clear screen

    Clear desk rules for papers and removable storage media and clear screen rules for information processing facilities should be defined and appropriately enforced.

    Purpose

    To reduce the risks of unauthorized access to information.

    Implementation Guidance

    Implement clear desk policy for all work areas

    Lock away sensitive information when not in use

    Enable automatic screen locks after inactivity

    Secure removable media when not in use

    Dispose of printed materials securely

    Recommended Tools

    ISO 27001 Services from the Directory

    These providers can help you implement A.7.7 and achieve ISO 27001 certification.

    By the team behind ISMS Directory

    Implementing A.7.7 for a client?

    ISMS Copilot drafts policies, evidence, and SoA wording for A.7.7 Clear desk and clear screen. Built for compliance professionals.

    Try ISMS Copilot free