From which country should the certification body be?
I am now working in the process of getting ISO27001 certified. Now I wonder about how to select a certifying agency to do the certification. My company is in India and I would like to get certified by an agency in India. Would that be an issue if I get certified by an agency in another country(say Dubai). Is that going to be of an advantage? Is that mandatory to have a company certified by the certifying authority in the same country?
ISMS scope for a Hospital
How to identify the scope at hospital environment? is it possible if we choose the "security management of patient data" for isms?
ISO 27017/ISO 27018 Implementation
Hi, please I found some info related 27017/18 implementation where an ISMS 27001 is already implemented (but Cloud is not in the scope of 27001 certification).
Cloud Service Provider assessment considerations
When writing a Cloud Service Provider Assessment Guideline based on CSA 3.0, what aspects should be considered?
Mapping all controls with risks
Is it a requirement that every single control in the standard is mapped to at least one risk/vulnerability during the risk assessment phase?
Asset value
Please guide me. How to determine the asset value ? Is there any formula for that ?
Transition from BS 25999 to ISO 22301
as an assignment i am looking to investigate the changes in BCM over the last ten years as a MSc Facilities Management assignment. Mainly my focus is the transition from BS 25999 to iso 22301. Any specific help in this direction would be appreciated.
Methodology for an IT audit
I need to implement a new metodology for IT audit, special in the Aplication Controls. But for Applications Controls, only find information in COBIT, and I want to use ISO 27001. It is possible?