NonConformities and Potential Imrovements
Assign topic to the user
The 2013 revision of ISO 27001 does not restrict you from using potential improvements in your procedures - therefore, if this system works fine in your company, you should leave it as it is.
CAn I keep the procedure as it is "ISMS Corrective and preventive action procedure", whch handle both corrective and preventive actions, even if it's no more required by the standard?
Comment as guest or Sign in
Jan 12, 2016

