A.5.13
    Organizational Controls

    Labelling of information

    An appropriate set of procedures for information labelling should be developed and implemented in accordance with the information classification scheme adopted by the organization.

    Purpose

    To ensure that information is clearly marked with its classification to enable appropriate handling and protection.

    Implementation Guidance

    Define labeling standards for different types of information and media

    Implement automated labeling where possible (e.g., email headers, document metadata)

    Train users on how to apply and interpret labels correctly

    Ensure labels are maintained throughout the information lifecycle

    Include labeling requirements in document templates

    Recommended Tools

    ISO 27001 Services from the Directory

    These providers can help you implement A.5.13 and achieve ISO 27001 certification.

    By the team behind ISMS Directory

    Implementing A.5.13 for a client?

    ISMS Copilot drafts policies, evidence, and SoA wording for A.5.13 Labelling of information. Built for compliance professionals.

    Try ISMS Copilot free