Castleforce IT Security Team

A.12.2 Correct processing in applications

Objective: To prevent errors, loss, unauthorized modification or misuse of information in applications.

A.12.2.1 Input data validation

Control

Data input to applications shall be validated to ensure that this data is correct and appropriate.

A.12.2.2 Control of internal processing

Control

Validation checks shall be incorporated into applications to detect any corruption of information through processing errors or deliberate acts.

A.12.2.3 Message integrity

Control

Requirements for ensuring authenticity and protecting message integrity in applications shall be identified, and appropriate controls identified and implemented.

A.12.2.4 Output data validation

Control

Data output from an application shall be validated to ensure that the processing of stored information is correct and appropriate to the circumstances.

Contact Castleforce for help with ISO27001