A.6.7
    People Controls

    Remote working

    Security measures should be implemented when personnel are working remotely to protect information accessed, processed or stored outside the organization's premises.

    Purpose

    To ensure information security when personnel work from remote locations.

    Implementation Guidance

    Define remote working security policy

    Require use of VPN or zero-trust network access

    Ensure devices have endpoint protection

    Implement secure remote access controls

    Provide security guidance for home networks

    Recommended Tools

    ISO 27001 Services from the Directory

    These providers can help you implement A.6.7 and achieve ISO 27001 certification.

    By the team behind ISMS Directory

    Implementing A.6.7 for a client?

    ISMS Copilot drafts policies, evidence, and SoA wording for A.6.7 Remote working. Built for compliance professionals.

    Try ISMS Copilot free