Guest
One question I had in regards to the security clauses was, how does the ISO 27001 ensure us data integrity?
I will be working on the ISO 27001 for *** together with my colleague, and we are having trouble with dividing the workload between us. Every document in the package, and every corresponding clause in the norm, seems to be an extension of the preceding one. The formulation of the policy, for example, has to be built on the definition of the scope. This makes it complicated to work on the documents and clauses separately. Do you have any tips or advice on this issue?
Control A7.1.1 is partially applied to Brazil under the law. In this case, can I put NO in the SOA and explain this or do I have to put YES and explain the exceptions?
Element of iso22301 that need to be considered in planning phases
I am your student at Advisera and just started going through the course now. So far it has been a great experience. Any possible way I have to leave a feedback, I am happy to do so.
Very soon, I am expected to take the Lead auditor exam and sort of lost now as I am unsure which exam I should take. My key requirements are that I need to take iso 27k1 LA certification that is not very expensive and does not expect me to attend a mandatory training program (As I am planning to go through yours)
I have been told for the PECB iso 27k1 exam, I need to attend their training and the same is the case for another one IGC.
Based on your expertise and experience, can you please advice me on the following:
1. Is there a significance in selecting the right body for certification. For eg. should i select Exemplerar/PECB/BSI compared to IGC (As IGC is perhaps not that well known) and does it have an impact on the CV.
2. Can you please point me to the right exam provider that does not need me to complete the exam compulsorily and advice what is perhaps the best one (both from a cost and recognition standpoint)
How can we be compliant to this Norm Document?
10.2 Continual Improvement
Considering we are already complying to all the ISMS relevant Topics, do we have to make any separate Documentation of this or? Since ISO calls for the Documented information, does Advisera Toolkit provide any Template for this?
What is the difference between:
07 Business continuity plan and 17.4 Business continuity plan?
I wonder how (most) of ISO 27001 can be applied in a world where everyone is WFH. And that's before even thinking about the information security issues with all the SaaS everyone is suddenly dependent on (Zoom...)."