RAIGT01-BP03 Create a plan for publishing and updating documentation
Identify which documents require updates based on stakeholder feedback, new use-cases, new system releases, and industry best practice developments. Dedicate an owner to facilitate the change management process which supports plans for review cycles, document and system versioning and approval chains.
Level of risk exposed if this best practice is not established: Medium
Implementation considerations
-
Establish documentation management infrastructure. Define the criteria for mandatory updates and create automated triggers (AWS EventBridge, Amazon SNS) based on system updates and stakeholder feedback. Assign ownership and responsibility for making the updates. Maintain document version history.
-
Establish and follow a review process. Set up an approval chain and create approval workflows. Check the contents for completeness, clarity, and technical accuracy.
-
Publish the updates and make them accessible to the stakeholders. Have a communication plan. Optionally set up an automated system to notify stakeholders of document updates.
Resources
Related documents:
-
ISO/IEC 42001:2023
A.8.2 System documentation and information for users
Related tools: