We use cookies to analyze our traffic. We also share information about your use of our site with our social media, advertising and analytics partners who may combine it with other information you have provided to them or that they have collected based on your use of their services. Read how we use cookies and how you can manage them by clicking on "Preferences".

Privacy Preferences

When you visit our website, the website may store or retrieve information via your browser, usually in the form of cookies. Since we respect your right to privacy, you can choose not to allow the collection of data from certain types of services. However, not allowing these services may affect your experience.


ISO27002:2022 has been updated: what does that mean for your security awareness program?

A number of things have changed in the new ISO27002:2022 version. For example, security awareness has moved from chapter 7 to chapter 6 People controls, and more importantly the controls have become much more explicit. Where previously it said "consider" or "It is customary that", now "must" is used. Good for you to know that the 2LRN4 security awareness platform already supports the controls of ISO 27002:2022 6.3 Awareness, education and training.

 

How does the 2LRN4 security awareness platform help to comply with ISO27002:2022

You can use the platform to make employees and relevant contractors aware of security risks at a level appropriate to the position. We will of course help you with the profile matrix. In addition, you can use and test the policy and relevant procedures in the field of information security on the platform. The courses are aimed at making employees aware of their responsibilities for information security.

Repeat security awareness activities

For new employees you can create a tailor-made onboarding course on the 2LRN4 platform, so that they know what the rules are regarding security on their first day. All courses can be scheduled so that activities are repeated with practical examples. We can also help with suitable physical and digital activities, such as phishing campaigns, flyers, booklets, posters and much more.