ISO 27001 A.8 Technological Controls
- A8.1 User end point devices
- A8.2 Privileged access rights
- A8.3 Information access restriction
- A8.4 Access to source code
- A8.5 Secure authentication
- A8.6 Capacity management
- A8.7 Protection against malware
- A8.8 Management of technical vulnerabilities
- A8.9 Configuration management
- A8.10 Information Deletion
- A8.11 Data masking
- A8.12 Data leakage prevention
- A8.13 Information backup
- A8.14 Redundancy of information processing facilities
- A8.15 Logging
- A8.16 Monitoring activities
- A8.17 Clock synchronization
- A8.18 Use of privileged utility programs
- A8.19 Installation of software on operational systems
- A8.20 Networks security
- A8.21 Security of network services
- A8.22 Segregation of networks
- A8.23 Web filtering
- A8.24 Use of cryptography
- A8.25 Secure development life cycle
- A8.26 Application security requirements
- A8.27 Secure system architecture and engineering principles
- A8.28 Secure coding
- A8.29 Security testing in development and acceptance
- A8.30 Outsourced development
- A8.31 Separation of development, test and production environments
- A8.32 Change management
- A8.33 Test information
- A8.34 Protection of information systems during audit testing
- ISO 27001 A.8 Technological Controls