Clause 5: Leadership
1. Objective
The objective of this control framework is to establish strong governance and clear accountability for information security by:
- Demonstrating executive leadership and active commitment to the ISMS (Clause 5.1 - Leadership and Commitment)
- Establishing, implementing, and maintaining a high-level Information Security Policy (Clause 5.2 - Policy)
- Ensuring that organizational roles, responsibilities, and authorities relevant to information security are clearly assigned, communicated, and understood across the company (Clause 5.3 - Organisational roles, responsibilities and authorities)
2. Scope
The scope of this document aligns directly with the overall scope of the ISMS as defined in Clause 4 - Context of the Organisation.
3. Availability and Access
This document is:
- Required reading for all anDREa employees and contractors.
- Available to all authorized interested parties and platform users via our public ISMS repository.