Guest
address change will change iso 27001 certification validity?
Does a company have to have ISO27001 as well as ISO27017 or can it have just ISO27017?
1) Can ISO 27001 be implemented by a person who is not an expert on the subject of IT system, (I will be the only one and I am Chemist) but who has previously implemented ISO 22000.
2) According to the fact that I am not an expert in information technology, which package is recommended to buy: 797, 1200 or 2000?
Do you have any information on the risk and control self assessments? Procedure?
We have purchased the toolkit 27001 incl. 27017 and 27018 from you.
We now have a question about this.
We cannot find any sample documents or templates in your tool kit for any of the following points:
ISO 27017
[Clauses on Service Agreements with cloud providers] in CLD.6.3.1
ISO 27018
[User Data Privacy Protection Agreement Guidelines] in A.1.1
[Security Requirements Specification] in A.4.1
Can you kindly tell us which of your documents contain these points or where we can find references to them?