Hello, for me, there are two possible interpretations of the term "outside" (out of).
Toolkit content
I do have a couple of questions for you regarding the documentation in the toolkit. Hopefully you want to answer these questions.
Becoming technical writer
Where do you apply as a technical writer for DR and BC (27K01 and 22301)? I have the experience as a systems engineer leading the technical group building the DR infrastructure and had written my own custom made BC plan with ISO 27K01 included. This time I want to focus on technical writing in BC and DR.
Lead Auditor certification renew
I did the auditor leader cert many years ago and at this time I would be interested in renewing this cert. Do I still have to take the workshops and the exam , or , is there another option for me as I'm interested in just renewing a cert I already took once?
Background check for suppliers
I am very new to Advisera and Conformio, so please bear with me. We purchased the ISO 27001 & the EU GDPR bundle. Prior to purchasing this, we had already put a significant effort towards a project for managing Supplier Relationships. With that known, on to my question….
Templates content
I had a question for you regarding the reference documents which are mentioned in the beginning of some of the ISO 27001 documents. Is it obligatory to mention these documents?
Policy statement
We have our audit fast approaching, and we would like to have the broadcast ready for our Quality Policy and ISMS Policy. Within 9001 and 27001, we have noticed these two documents have a very different format. 9001 is presented as a 1 page Certificate Format and 27001 is presented as a very detailed 4 page policy that cannot be used for a Certificate Format. Can you please assist here, so our 9001 and 27001 Policy Statements appear uniformed and aligned to present framed for our clients.
The Statement of Acceptance of ISMS System Documents
The Statement of Acceptance of ISMS System Documents. Can you please supply a consolidated list of policies the auditor requires each employee to sign for?
Templates identification
I recently purchased the ISO 27001 Toolkit. I see on your website (which is great, BTW) the Acceptable Use Policy for purchase and it appears to be identical to the IT Security Policy that ships in the Toolkit. Is one name preferred over the other? Our customers tend to ask for our Acceptable Use Policy, so I’m inclined to call it that. Would there be any reason not to?
Audit scope
My ISO 27k certification auditor is asking to audit one critical service provider (internal service in the company), this will be part of the surveillance audit . Is he authorized to do so?