ISO 27001 & 22301 - Expert Advice Community

Guest

Guest

Create New Topic As guest or Sign in

HTML tags are not allowed

Assign topic to the user

  • ISMS scope - IT admins out of the scope?

    Dear Advisera support,

    We’ve bought the toolkit – thank you!  -  and I have a couple of questions regarding ISMS Scope:

    1. We want to restrict the scope to one software support service only. There are about 100 employees working on this support service with customers. Could we define the Scope as a service?
    2. There are 5 office locations. Should we name exact addresses or just cities?

    3. There are two servers in the cloud for the service, they are administered by our IT admins, so they are asset owners for them. The question is: can IT system administrators be not in the scope? Or should all the assets/asset owners be in the scope?

  • Conducting ISO 27001 to multiple organizations from one platform

    we are an IT company conducting ISO 27k to multiple organizations, can we manage all from 1 platform?

  • Security policies for cloud environment

    As my security and compliance team are preparing annual policy review.

    Can you guide me some security policies for cloud environment, controlled data border  ( PaaS, SaaS … ). For example, in ***, the State Bank requires data must be accessed by the government when necessary (data center in ***...)

  • Question about ISO 27018 certification

    I am trying to determine if ISO 27018 is certifiable same as ISO27001. If not how are companies saying they have a certificate. How does that work?

  • Aligning business strategy to ISMS

    How do you align business strategy to ISMS?

  • ISO certification

    1. What are all the procedures for getting ISO 27001 certification for an organization?
    2. What are all the requirements (i.e., qualification for company, needs for getting ISO certification)?
    3. Where we can apply for that ISO certification?
    4. What is the cost of this ISO certification?
    5. If we applied when it will reach us?
    6. How much the period of time for this ISO certification? Once we got that certification when we renew that or not needed.

  • ISO certification

    Una pregunta.
    Necesitamos certificarnos en seguridad de borrado de datos o destrucción de discos.
    Cual de las ISO nos serviría para revisar los paquetes?