Skip to content
arrow_back
search
Annex A 7.13 verified ISO/IEC 27001:2022

Proper Maintenance of Equipment

Ensure all equipment is regularly maintained to prevent failures and protect data.

record_voice_over

Plain language

This control is about taking care of your organisation's equipment so it works well, protects sensitive information, and doesn't disrupt your business. If you neglect regular maintenance, equipment might fail unexpectedly, causing data loss or security breaches.

Framework

ISO/IEC 27001:2022

Control effect

Preventative

ISO 27001 domain

Physical controls

Classifications

N/A

Official last update

24 Oct 2022

Control Stack last updated

19 Mar 2026

Maturity levels

N/A

Official control statement

Equipment shall be maintained correctly to ensure availability, integrity and confidentiality of information.
verified ISO/IEC 27001:2022 Annex A 7.13
priority_high

Why it matters

Neglecting equipment maintenance can lead to downtime, compromised data integrity, and increased risk of security breaches.

settings

Operational notes

Schedule preventative maintenance, log servicing and faults, track performance, and include patching/AV checks to keep devices reliable.

Mapping detail

Mapping

Direction

Controls