Home

ISO/IEC TR 27008:2011
Subscribe to updates

Information technology -- Security techniques -- Guidelines for auditors on information security controls

(Not available in French)

Abstract

ISO/IEC TR 27008:2011 provides guidance on reviewing the implementation and operation of controls, including technical compliance checking of information system controls, in compliance with an organization's established information security standards.

ISO/IEC TR 27008:2011 is applicable to all types and sizes of organizations, including public and private companies, government entities, and not-for-profit organizations conducting information security reviews and technical compliance checks. It is not intended for management systems audits.

 

Format
  • PDF

    This format preserves the paper layout, and is watermarked

  • EPUB

    This format allows documents to be read on tablets and smartphones

  • COLOUR PDF

    Enhanced user-friendly colour PDF format

  • REDLINE

    See any updates made from previous versions at a glance

  • PAPER

    Normally A4 size documents. Shipping costs apply

Language
PDF
Paper

Swiss francs CHF 158

Buy

Got a question?

Check out our FAQs

Email Customer Care
or call us on +41 22 749 08 88
09:00 – 12:00, 14:00 – 17:00 (UTC+1).