Your trusted partner in security and compliance.

ISO/IEC 27001:2022
ISO/IEC 27001:2022 is the international standard for building and continually improving an Information Security Management System (ISMS), with a strong focus on risk-based controls, access governance, and end-to-end traceability across hybrid and cloud environments. This page provides an ISO 27001 control mapping aligned with real-world business use cases, demonstrating how Devolutions product capabilities directly support secure remote access, privileged access and credential management, identity governance, and auditable accountability.
5. Organizational Controls
5.3 Segregation of duties
5.9 Inventory of information and other associated assets
5.15 Access control
5.16 Identity management
5.17 Authentication information
5.18 Access rights
5.23 Information security for use of cloud services
5.24 Information security incident management planning and preparation
5.25 Assessment and decision on information security events
5.26 Response to information security incidents
5.27 Learning from information security incidents
5.28 Collection of evidence
6. People Controls
6.7 Remote working
7. Physical Controls
7.10 Storage media
8. Technological controls
8.1 User end point devices
8.2 Privileged access rights
8.3 Information access restriction
8.4 Access to source code
8.5 Secure authentication
8.7 Protection against malware
8.9 Configuration management
8.11 Data masking
8.12 Data leakage prevention
8.13 Information backup
8.15 Logging
8.16 Monitoring activities
8.18 Use of privileged utility programs
8.22 Segregation of networks
8.24 Use of cryptography
8.25 Secure development life cycle
8.29 Security testing in development and acceptance
8.31 Separation of development, test and production environments
8.32 Change management
8.33 Test information
Resources
Explore more insights and tools to help you stay on top of your IT security game.
Devolutions Blog
How Devolutions helps organizations meet key IAM controls in ISO/IEC 27001:2022
Read the articles
Conveyor Devolutions
Centralized access to Devolutions' legal documentation and compliance certifications.
Learn more
Devolutions Documentation
The Security, Legal & Privacy button redirects you to our website, where you can access all relevant resources
Consult the documentation
Need help navigating compliance?
Our team of experts can help you understand how Devolutions solutions meet your compliance requirements and guide you through the process.
