A.5.2 — Information security roles and responsibilities
This control defines and assigns roles and responsibilities for information security to ensure accountability. Measures include clear documentation of responsibilities, periodic reviews, and enforcement mechanisms.
| Property | Value |
|---|---|
| Section | process |
| Owner | operator |
Mapped Controls
| Control | Title |
|---|---|
| SID-ORG-02 | Roles, Responsibilities, and Segregation of Duties |
Source: ISO/IEC 27001:2022 Annex A