ISO 27001 People Controls
Controls related to human resource security, including screening, training, and responsibilities. Covers 8 controls for managing people-related security risks.
Showing 8 controls in People Controls
Screening
To ensure that personnel are suitable for their roles and understand their responsibilities.
Terms and conditions of employment
To ensure personnel understand and accept their information security responsibilities.
Information security awareness, education and training
To ensure personnel are aware of and can fulfill their information security responsibilities.
Disciplinary process
To ensure there are consequences for information security policy violations.
Responsibilities after termination or change of employment
To protect the organization's interests after termination or change of employment.
Confidentiality or non-disclosure agreements
To maintain confidentiality of organizational information through legal agreements.
Remote working
To ensure information security when personnel work from remote locations.
Information security event reporting
To ensure timely awareness of security events and enable appropriate response.
