A.8.7
    Technological Controls

    Protection against malware

    Protection against malware should be implemented and supported by appropriate user awareness.

    Purpose

    To ensure that information and information processing facilities are protected against malware.

    Implementation Guidance

    Deploy anti-malware software on all endpoints

    Keep malware definitions up to date

    Scan files and emails for malware

    Educate users about malware risks

    Monitor for malware detections and respond promptly

    Recommended Tools

    ISO 27001 Services from the Directory

    These providers can help you implement A.8.7 and achieve ISO 27001 certification.

    By the team behind ISMS Directory

    Implementing A.8.7 for a client?

    ISMS Copilot drafts policies, evidence, and SoA wording for A.8.7 Protection against malware. Built for compliance professionals.

    Try ISMS Copilot free