ISO 27001 5.37 Documented Operating Procedures Requirement:
"Operating procedures for information processing facilities shall be documented and made available to personnel who need them."[1]
ISO 27001 5.37 Documented Operating Procedures Requirement Explanation:
Repeatable processes are required for a mature cybersecurity program. Documented IT and security standard operating procedures help demonstrate a mature information security program. Examples of topics covered by standard operating procedures are user onboarding change controls and media sanitation.
References:
Quick & Simple
Discover Our Cybersecurity Compliance Solutions:
Whether you need to meet and maintain your compliance requirements, help your clients meet them, or verify supplier compliance we have the expertise and solution for you