ISO 27001 5.36 Compliance with Policies, Rules and Standards for Information Security Requirement:
"Compliance with the organization’s information security policy, topic-specific policies, rules and standards shall be regularly reviewed."[1]
ISO 27001 5.36 Compliance with Policies, Rules and Standards for Information Security Requirement Explanation:
Periodically (e.g. annually) compare the organization's security policies against the organization's technical and physical security controls to determine if the organization's policy is infact being implemented.
References:
Quick & Simple
Discover Our Cybersecurity Compliance Solutions:
Whether you need to meet and maintain your compliance requirements, help your clients meet them, or verify supplier compliance we have the expertise and solution for you