How can audits be planned to cover the entire standard? Is there an accepted way to sample different portions of the standard over cycles? (Ex. how can all 133 controls be audited each time without missing other areas of the Standard?)
ISO 27001 and SOC report / audit
How this ISO standard relates to the Trust Service Principles as applied in SOC report / audit? What resource can be shared between the two?
Best practices for asset identification
My question was about best practicies of assets identification, and in my practice, interviewing with personal is almost the last part of the long and complex process of assets identification. I was wondering what is your opinion about it and your methods of assets identification.
Documenting the measurement of controls
I need a sample information security metrics sheet ..... As we are aware .... ISO 27001:2013 demands " documented " information on what controls the organization selects how u measure them and how they ultimately help to achieve the defined infosec objectives. I kindly request you to help me with Procedure document for Information Security Metrics and Measurement and associated template / XLS file for same.
ISO 9001 for the implementation of ISO 27001
We are working with our sister company for NIST requirements, which we can translate to ISO 27001. However the sister company only has 9001 in place. Do you have any material to help us translate from 9001 to 27001?
ISO standards related to cabling
I have a simple Query … While constructing the Server Room, are there any ISO instructions on the Wires beingOverhead or Underground?
How to set measurable security objectives?
I want to ask about ISO27001 standard 6.2. How can we set (measurable) security objectives? Could you please share with me some examples?
The process of implementation in a simple way
I need to understand the process in a simple way
ISO 27001 and COBIT 5
What has this got to do with cobit 5?
The implementation of ISO 27001
Regarding the implementation of ISO 27001, I feel sometimes lost as to where to start from and how to execute it following the many depemdencies.