ISO 27001 8.9 Configuration Management Requirement:
"Configurations, including security configurations, of hardware, software, services and networks shall be established, documented, implemented, monitored and reviewed."[1]
ISO 27001 8.9 Configuration Management Requirement Explanation:
Create baseline configurations for each type of system component used in your company. Baseline configurations specify how a particular device such as a Windows computer should be configured. This includes documenting the default software to be installed on a system and its security settings. You need to establish baseline configurations for computers servers network devices software (operating systems) and printers. Periodically review and update your baseline configurations to reflect any new operational requirements.
References:
Quick & Simple
Discover Our Cybersecurity Compliance Solutions:
Whether you need to meet and maintain your compliance requirements, help your clients meet them, or verify supplier compliance we have the expertise and solution for you