Back to all 93 controls
    Annex A 5.10
    Organizational

    A.5.10 Acceptable use of information and other associated assets

    Staff know how they may use assets.

    What good looks like

    Acceptable Use Policy covering email, internet, devices, AI tools - acknowledged by users.

    Evidence an auditor will ask for

    AUP, signed acknowledgements, onboarding records.

    Reviewed & Verified by a Certified ISO/IEC 27001 Lead Implementer

    Built for practitioners, by practitioners. Every template, control definition, and audit checklist in this directory is aligned with the latest ISO 27001:2022 standard and structured around real-world certification audit requirements.

    Certified Lead Implementer
    2022 Standard Aligned
    Audit-Ready Materials

    Document template for this control

    The Acceptable Use Policy template gives you auditor-ready wording that fulfils Annex A 5.10. Preview the full document before you download the editable version.