A.8.22
    Technological Controls

    Segregation of networks

    Groups of information services, users and information systems should be segregated in the organization's networks.

    Purpose

    To separate networks into security zones based on risk and trust levels.

    Implementation Guidance

    Implement network segmentation using VLANs or firewalls

    Separate production, development, and test environments

    Isolate guest networks from corporate networks

    Control traffic between network segments

    Document network segmentation design

    Recommended Tools

    ISO 27001 Services from the Directory

    These providers can help you implement A.8.22 and achieve ISO 27001 certification.

    By the team behind ISMS Directory

    Implementing A.8.22 for a client?

    ISMS Copilot drafts policies, evidence, and SoA wording for A.8.22 Segregation of networks. Built for compliance professionals.

    Try ISMS Copilot free