ISO 27001 – Physical Security Controls

ISO 27001 – Physical Security Controls

InfoSec Insider · 2025-05-22
18:05

In this episode of InfoSec Insider, Wayne Armstrong, Senior Consultant at URM, breaks down the ‘Physical’ control theme from Annex A of ISO 27001, which are a set of security measures aimed at protecting an organisation’s physical assets and environment, such as their buildings, equipment, and paper copies of documents. Wayne leverages his 30+ of experience with information security to discuss:

Why the physical security controls are important and what physical controls are recommended by ISO 27001Whether you still need to consider physical security when all your data is stored in and accessible from the cloudThe benefits of controls such as access cards and visible IDs for staff accessing business premisesThe relevance of physical controls for remote workersHow to overcome the common pitfalls associated with operating and managing physical security controls.

Learn more about this topic: https://www.urmconsulting.com/blog/iso-27001-2022-annex-a-physical-controls

If you enjoyed this episode of InfoSec Insider, you can leave us a rating and review here: https://ratethispodcast.com/infosecinsider  

You can find more episodes of InfoSec Insider here:

https://urmconsulting.com/podcasts 

Brought to you by URM, the UK’s leading information and cyber security specialists.   

InfoSec Insider

The InfoSec Insider podcast brings you weekly interviews with practicing senior consultants, who draw upon their extensive experience to provide detailed and practical guidance on all things information and cyber security, data protection compliance, risk management, and more. In each episode, one of our experts takes a deep-dive into a particular aspect of their area of specialism, whether that be certifying to ISO 27001, outlining some top tips for GDPR compliance, making the case for alternative approaches to pen testing, or discussing how to conduct an effective business impact analysis (BIA). Enhance your understanding and professional skillset with the InfoSec Insider podcast, brought to you by URM, the UK’s leading provider of cyber security and governance, risk management and compliance consultancy.

Where can you listen?

Apple Podcasts Logo Podtail Logo Google Podcasts Logo RSS

Episodes