1. Framework FAQs

ISO 27001: 2022 A.5.6 Contact with special interest groups

This article provides additional information on how you can meet the requirement for the ISO 27001: 2022 control A.5.6 Contact with special interest groups

ISO 27001: 2022 Control Description

The organisation shall establish and maintain contact with special  interest groups or other specialist security forums and professional  associations.

Purpose

To ensure the appropriate flow of information regarding information security.

Guidance on Implementation

Membership in special interest groups or forums should be considered to:

a) Improve knowledge about best practices and stay updated with relevant security information;

b) Ensure a current understanding of the information security environment;

c) Receive early warnings of alerts, advisories, and patches related to attacks and vulnerabilities;

d) Gain access to specialist information security advice;

e) Share and exchange information about new technologies, products, services, threats, and vulnerabilities;

f) Provide suitable liaison points when dealing with information security incidents.