ISO 27001 5.27 Learning From Information Security Incidents Requirement:
"Knowledge gained from information security incidents shall be used to strengthen and improve the information security controls."[1]
ISO 27001 5.27 Learning From Information Security Incidents Requirement Explanation:
As part of each incident response exercise and actual incident response lessons learned shall be documented and applied to improve the incident response capability.
References:
Quick & Simple
Discover Our Cybersecurity Compliance Solutions:
Whether you need to meet and maintain your compliance requirements, help your clients meet them, or verify supplier compliance we have the expertise and solution for you