ISO 27001 & 22301 - Expert Advice Community

Guest

Guest

Create New Topic As guest or Sign in

HTML tags are not allowed

Assign topic to the user

  • From which country should the certification body be?

    I am now working in the process of getting ISO27001 certified. Now I wonder about how to select a certifying agency to do the certification. My company is in India and I would like to get certified by an agency in India. Would that be an issue if I get certified by an agency in another country(say Dubai). Is that going to be of an advantage? Is that mandatory to have a company certified by the certifying authority in the same country?
  • ISMS scope for a Hospital

    How to identify the scope at hospital environment? is it possible if we choose the "security management of patient data" for isms?
  • ISO 27017/ISO 27018 Implementation

    Hi, please I found some info related 27017/18 implementation where an ISMS 27001 is already implemented (but Cloud is not in the scope of 27001 certification).
  • Cloud Service Provider assessment considerations

    When writing a Cloud Service Provider Assessment Guideline based on CSA 3.0, what aspects should be considered?
  • Mapping all controls with risks

    Is it a requirement that every single control in the standard is mapped to at least one risk/vulnerability during the risk assessment phase?
  • Asset value

    Please guide me. How to determine the asset value ? Is there any formula for that ?
  • Transition from BS 25999 to ISO 22301

    as an assignment i am looking to investigate the changes in BCM over the last ten years as a MSc Facilities Management assignment. Mainly my focus is the transition from BS 25999 to iso 22301. Any specific help in this direction would be appreciated.
  • Methodology for an IT audit

    I need to implement a new metodology for IT audit, special in the Aplication Controls. But for Applications Controls, only find information in COBIT, and I want to use ISO 27001. It is possible?