Get Demo
↑

ISO 27001 A.8.15 Logging: What to Log, Retain and Review

ISO/IEC...

Published: September 2026 Compliance · ISO 27001 10–14 min read

A.8.15 Logging is a Technological control. Per Annex A, logs that record activities, exceptions, faults and other relevant events shall be produced, stored, protected and analysed.

ID lock: Title = Logging (A.8.15). Pair with A.8.16 Monitoring activities.

Practical Evidence

Operationalize ISO 27001:2022 with Continuous Evidence

CyberSilo CSA tracks SoA and mandatory records; ThreatHawk supports logging and monitoring artefacts for technological controls.

Frequently Asked Questions

What is the official title of A.8.15?

Logging.

What does the control text require at a high level?

Logs that record activities, exceptions, faults and other relevant events shall be produced, stored, protected and analysed.

How does SIEM help?

A SIEM such as ThreatHawk centralizes production, protection, and analysis — retention and review procedures remain ISMS responsibilities.

ISO 27001 hub · 93 controls · SoA · CSA · A.8.16

📰 More from CyberSilo

Latest Articles

Stay ahead of evolving cyber threats with our expert insights

✅ Link copied!