Acquiring the PDF is only the first step. To effectively use the standard:

ISO 27002 is an international standard published by the International Organization for Standardization (ISO) and the International Electrotechnical Commission (IEC). The standard provides guidelines for implementing, maintaining, and improving an organization's information security management system (ISMS). The full title of the standard is "Information security controls - Code of practice for information security controls."

Adapt the ISO 27002 suggestions to fit your company culture and technical environment.

Information security professionals and compliance officers often search for the ISO 27002 PDF to:

To help you find or use this standard effectively, here are a few options:

Don't implement every control; choose the ones that address your specific risks.