Guest
Internal Audit
In reference to your conversation, could you please advise who should approve the Internal Audit?
We have a CSO and an AVP, Info Sec.
Assign topic to the user
Expert
Rhand Leal
Apr 06, 2020
I'm assuming that by AVP you mean "Assitant Vice President".
Considering that, the person to approve the Internal audit must be the one in the highest position in the ISMS scope (i.e., the person most interested in the ISMS results). It should not be the person with responsibilities for the operation of information security (e.g., CSO or CISO) because this would be a situation of conflict of interest.
Comment as guest or Sign in
Apr 06, 2020
Apr 06, 2020
Apr 06, 2020