Emergency changes requiring immediate implementation are properly handled to ensure minimal impact on systems and IT applications. The emergency change is registered, evaluated and tested after implementation and approved by responsible management.
Specification
The emergency change management procedure is formalised, documented, authorised, communicated and executed in a standarised matter.
ISO 27001 & 27002:2022
8.1,
A8.32
SURF toetsingskader informatiebeveiliging (NBA-volwassenheidsmodel)
CH.03 Noodaanpassingen