Expert Advice Community

Guest

ISO 27001 implementation

  Quote
Guest
Guest user Created:   Apr 05, 2019 Last commented:   Apr 05, 2019

ISO 27001 implementation

I am a Project manager handling all the security projects for my organisation, where in we are currently implementing ISO 27001. I have gone through most of your resources put up on ISO 27001 and those were quite helpful. Thanks for all those free resources which are easily available for us to refer and get ourselves educated on this standard. Still,I would need a little bit of guidance in implementing the ISO 27001 for small to medium size company, if you could provide your valuable inputs on how to get this implemented, it would be great.
0 0

Assign topic to the user

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

Expert
Rhand Leal Apr 05, 2019

Answer:

Broadly speaking, to implement ISO 27001 an organization has to:
- Obtain top management support
- Define and document a scope based on the needs and expectations of interested parties relevant to information security
- Define, document and communicate an information security policy
- Define roles and responsibilities relevant to operation and management of information security
- Define a risk assessment and treatment methodology
- Define and allocate competencies and resources for the opera tion and management of information security
- Implement risk assessment and risk treatment
- Operate the security controls and generate the necessary records
- Measure, monitor and evaluate the information security performance
- Implement corrections and improvements

To increase chances of success, it is important that persons involved have experience in project management and know edge of the standard.

Since you stated that you are already using our free materials, as additional guidance, I suggest you to take a look at the free demo of our ISO 27001 Documentation Toolkit at this link: https://advisera.com/27001academy/iso-27001-documentation-toolkit/

With this demo you can see how the mandatory, and most commonly used, documents to implement ISO 27001 looks like and they may give you insights to help with you implementation.

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Apr 05, 2019

Apr 05, 2019

Suggested Topics