ISO 27001 8.33 Test Information Requirement:
"Test information shall be appropriately selected, protected and managed."[1]
ISO 27001 8.33 Test Information Requirement Explanation:
When testing information system components non-sensitive or pseudo information should be used. Environments that are still under development may not have the appropriate security controls in place to protect real data and real data may be lost or modified during testing.
References:
Quick & Simple
Discover Our Cybersecurity Compliance Solutions:
Whether you need to meet and maintain your compliance requirements, help your clients meet them, or verify supplier compliance we have the expertise and solution for you