ISO 27001
Technological Controls
34 controls in this category. Click any control to see implementation guidance, evidence requirements, and common audit failures.
A.8.1critical
User endpoint devices
Technological Controls
A.8.10high
Information deletion
Technological Controls
A.8.11high
Data masking
Technological Controls
A.8.12high
Data leakage prevention
Technological Controls
A.8.13critical
Information backup
Technological Controls
A.8.14high
Redundancy of information processing facilities
Technological Controls
A.8.15critical
Logging
Technological Controls
A.8.16critical
Monitoring activities
Technological Controls
A.8.17medium
Clock synchronization
Technological Controls
A.8.18medium
Use of privileged utility programs
Technological Controls
A.8.19high
Installation of software on operational systems
Technological Controls
A.8.2critical
Privileged access rights
Technological Controls
A.8.20critical
Networks security
Technological Controls
A.8.21medium
Security of network services
Technological Controls
A.8.22high
Segregation of networks
Technological Controls
A.8.23high
Web filtering
Technological Controls
A.8.24critical
Use of cryptography
Technological Controls
A.8.25high
Secure development life cycle
Technological Controls
A.8.26high
Application security requirements
Technological Controls
A.8.27high
Secure system architecture and engineering principles
Technological Controls
A.8.28high
Secure coding
Technological Controls
A.8.29high
Security testing in development and acceptance
Technological Controls
A.8.3high
Information access restriction
Technological Controls
A.8.30high
Outsourced development
Technological Controls
A.8.31high
Separation of development, test and production environments
Technological Controls
A.8.32high
Change management
Technological Controls
A.8.33medium
Test information
Technological Controls
A.8.34medium
Protection of information systems during audit testing
Technological Controls
A.8.4high
Access to source code
Technological Controls
A.8.5critical
Secure authentication
Technological Controls
A.8.6medium
Capacity management
Technological Controls
A.8.7critical
Protection against malware
Technological Controls
A.8.8critical
Management of technical vulnerabilities
Technological Controls
A.8.9high
Configuration management
Technological Controls
Assess ISO 27001 Technological Controls
Track every control, collect evidence, and generate audit-ready reports with AuditFront.
Start Free AssessmentFree plan · No credit card required