From the course: ISO 27001:2013-Compliant Cybersecurity: Annex A Controls

Unlock the full course today

Join today to access over 24,200 courses taught by industry experts.

Asset management: Responsibility for assets (Clause A.8.1)

Asset management: Responsibility for assets (Clause A.8.1)

From the course: ISO 27001:2013-Compliant Cybersecurity: Annex A Controls

Asset management: Responsibility for assets (Clause A.8.1)

- [Instructor] Your organization has all kinds of different assets, monetary assets, people assets, and information assets. Of course, ISO 27001 is especially focused on information assets, so we come to Clause A.8.1 called Responsibility for Assets. The objective of this clause is to identify your organization's information assets and define the appropriate responsibilities to protect them. In order to know what assets to protect though you need to know what assets you have. That's why Clause A.8.1 starts out with Inventory of Assets. This clause requires your organization to identify all assets associated with information and information-processing facilities, and maintain an inventory of these assets. And the types of information assets you should inventory include physical assets and their details like type, model, and location, documentation, such as system documentation, contracts, procedures, etcetera, software assets,…

Contents