An information security manager is using Annex A of ISO/IEC 27001 to select appropriate controls. For a specific control, such as 'A.5.23 Information security for use of cloud services', they require more detailed implementation guidance. Which standard in the ISO 27000 family provides this detailed guidance for the controls listed in Annex A?
-
A
ISO/IEC 27000
-
B
ISO/IEC 27002
-
C
ISO/IEC 27005
-
D
ISO/IEC 27001