TISAX - Trusted Information Security Assessment Exchange
Information Security Management

TISAX - Trusted Information Security Assessment Exchange TISAX-ISM-03: Human Resources Security

Implement security measures for the employment lifecycle including screening, security awareness training, and responsibilities upon termination or change of employment.

Maintained by Gerard BlokdykVerified against the published standard Control text last updated

What else in your programme already covers this

This control maps to 19 controls across 11 other frameworks. If you already hold one of them, the evidence you collected for it is the starting point here rather than new work.

  • ASD37-37 Personnel management (Very Good)
  • CJIS-2 Security Awareness Training
  • CAT-D1-4 Training and culture

ISO 27799:2025 · 1 control

  • ISO27799-09 Security awareness and training program
  • ISO28001-PI-02 Security Awareness and Training

ISO/IEC 27011:2024 · 1 control

  • 27011-6.3 Awareness and Training
  • SBD-DEV-04 Phishing-Resistant Authentication

Every mapping shown was judged rather than inferred from wording similarity, and the ones that failed review are published too. See the coverage reports and what was rejected.

Other controls in Information Security Management

Query this from an agent

The graph holds this control, the 19 it maps to, and the evidence behind each claim, over MCP and REST.