For each individual control, the standard provides a consistent layout to ensure clarity for security managers:
Proper use of encryption and key management. ISO/IEC 27002:2013
The 2013 version of the standard is organized into , which collectively contain 35 control objectives and 114 specific controls . Core Control Domains: For each individual control, the standard provides a
Avoiding legal, statutory, or contractual breaches. 2. Implementation Framework For each individual control
ISO/IEC 27002:2013: A Comprehensive Code of Practice for Information Security Controls
User responsibilities and managing system/application access.