A.6.5
    People Controls

    Responsibilities after termination or change of employment

    Information security responsibilities and duties that remain valid after termination or change of employment should be defined, enforced and communicated to relevant personnel and other interested parties.

    Purpose

    To protect the organization's interests after termination or change of employment.

    Implementation Guidance

    Include post-employment obligations in contracts

    Ensure confidentiality obligations survive termination

    Define procedures for return of assets

    Specify restrictions on use of organizational information

    Obtain confirmation of ongoing obligations upon departure

    Recommended Tools

    ISO 27001 Services from the Directory

    These providers can help you implement A.6.5 and achieve ISO 27001 certification.

    By the team behind ISMS Directory

    Implementing A.6.5 for a client?

    ISMS Copilot drafts policies, evidence, and SoA wording for A.6.5 Responsibilities after termination or change of employment. Built for compliance professionals.

    Try ISMS Copilot free