Expert Advice Community

Guest

Filling a SoA document

  Quote
Guest
Guest user Created:   Aug 06, 2017 Last commented:   Aug 06, 2017

Filling a SoA document

I am completing the SoA and wonder if I do need to complete for each objective and control, the ‘responsibility coloum’ or can this be left blank?
0 0

Assign topic to the user

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

Expert
Rhand Leal Aug 06, 2017

Answer: ISO 27001 does not requires responsibilities to be included in the SoA, so you do not need to include this information because of the standard. Some organizations decide to include this information in the SoA so it becomes easier for them to identify who is responsible for each control (all information could be found in a single document). Of course, if you decide for this approach, if a control is considered not applicable, them you should left the field blank.

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Aug 05, 2017

Aug 05, 2017

Suggested Topics

Guest user Created:   Mar 10, 2019 ISO 27001 & 22301
Replies: 1
0 0

Toolkit content

Guest user Created:   Aug 04, 2018 ISO 27001 & 22301
Replies: 1
0 0

Filling a SoA template

Guest user Created:   Jul 27, 2018 ISO 27001 & 22301
Replies: 1
0 0

Filling templates