Expert
Rhand Leal
Apr 24, 2020
ISO 27001 does not prescribe the content of the risk treatment plan, but as good practice, it should consider at least:
- which security controls you need to implement
- who is responsible for them
- what are the deadlines
- which resources (i.e. financial and human)
To see how a risk treatment plan looks like, please access the free demo of our Risk Treatment Plan at this link: https://advisera.com/27001academy/documentation/risk-treatment-plan/
This article will provide you further explanation about the risk treatment plan:
- Risk Treatment Plan and risk treatment process – What’s the difference? https://advisera.com/27001academy/iso-27001-risk-assessment-treatment-management/#treatment
Comment as guest or Sign in
Apr 24, 2020
Apr 24, 2020
Apr 24, 2020