Details.
Identify differences between an organisation's practices and a reference framework. Organisational and physical audits are generally based on ISO/IEC 27002 Information Security, Code of Good Practice for Information Security Management. The standard presents 114 security measures across several themes intended to preserve the confidentiality, integrity and availability of an information system within a company.
