From the course: ISO 27001:2022-Compliant Cybersecurity: Getting Started

Unlock the full course today

Join today to access over 23,200 courses taught by industry experts.

ISO 27001:2013 and ISO 27001:2022 differences and mapping

ISO 27001:2013 and ISO 27001:2022 differences and mapping

From the course: ISO 27001:2022-Compliant Cybersecurity: Getting Started

ISO 27001:2013 and ISO 27001:2022 differences and mapping

- [Instructor] In 2022, ISO 27001 was updated to reflect changes that were made in ISO 27002, which describes the requirements for all the Annex A Controls. The updates in ISO 27001 focus on streamlining and simplifying the standard, making it easier to implement and more effective at protecting information. The main clauses of ISO 27001, clauses 4 through 10, had only minor changes. For instance, clause 6.3 was added, which requires explicit planning for changes to the information security management system. The changes are more significant in the Annex A Controls though. The number of controls has decreased from 114 to 93. Of the 114 original controls, 35 have remained unchanged, 23 have been renamed, 57 have been merged into 24, and 11 new controls have been added. The new controls are 5.23, Information security for use of cloud services; 5.30, ICT readiness for business continuity; 5.7, Threat intelligence;…
