ISO 27001 · Clause 10.2

The five-step corrective action process

1
React

Contain it and correct the immediate effects.

2
Investigate

Find the root cause; check for similar issues.

3
Act

Implement corrective action to prevent recurrence.

4
Review

Confirm the action was effective.

5
Update

Adjust the ISMS, risks and documentation.