Information security for use of cloud services
Summary
Processes for acquisition, use, management, and exit from cloud services shall be established in accordance with the organisation's information security requirements.
cloud securitythird party
Read the full official text: https://www.iso.org/standard/27001
← Clause 5.22
Monitoring, review and change management of supplier services
Clause 5.24 →
Information security incident management planning and preparation
Track ISO 27001 clause 5.23 as evidence
eurocompliant maps this obligation to a checklist task and the evidence that satisfies it, alongside every other framework you follow.
Start free trial