ISO 27001 & 22301 - Expert Advice Community

Guest

Guest

Create New Topic As guest or Sign in

HTML tags are not allowed

Assign topic to the user

  • Continuous Improvement

    How can we be compliant to this Norm Document?

    10.2 Continual Improvement

    Considering we are already complying to all the ISMS relevant Topics, do we have to make any separate Documentation of this or?  Since ISO calls for the Documented information, does Advisera Toolkit provide any Template for this?

  • Business Continuity Plan template

    What is the difference between:
    07 Business continuity plan and 17.4 Business continuity plan?

  • ISO 27001 in pandemic

    I wonder how (most) of ISO 27001 can be applied in a world where everyone is WFH. And that's before even thinking about the information security issues with all the SaaS everyone is suddenly dependent on (Zoom...)."

  • Question about policy

    Thanks for your continuous insight into Management Systems.
    I have 2 questions on my mind.

    1. Is there any document showing how to link policies? That is which policies are dependent on which policies?

    2. How to show risks of inadequate leadership in a nice way

  • Risk treatment plan

     If we have identified a control in the SoA that is a legal requirement or a management decision to implement, can I document the associqated tasks in the RTP or should I create a seperate spreadsheet to handle these?

     

     

  • Toolkit content

    which product has A.18. Compliance i stopped by yesterday to ask about this we have the toolkit but I don't think it inclues this one is there a different one which may?
  • A.12.6.1 Management of Technical Vulnerabilities

    Hi I'm a customer with a question - is there anything specific regarding patching in the toolkit that we purchased. I see that the ISO has a standard: A.12.6.1 Management of Technical Vulnerabilities but not sure there's this document in the toolkit

  • Difference in clauses

    When I read ISO 27001 I had one question, I wanted to inquire about it, what is the difference between clause (6.1.2) and clause (8.2), as well as clause (6.1.3) and clause (8.3), is it just a repetition of the information? Please explain. Thank u very much

  • Question about policy

    1. Is there any document showing how to link policies? That is which policies are dependent on which policies?

    2. How to show risks of inadequate leadership in a nice way.

  • Disaster recovery plan difference

    1. Can you please advise what the difference is between the EN and the cloud documents (screenshot below)? The READ THIS FIRST does not explain. I checked the Table of Contents. Is it for different scenario’s depending on if existing systems are cloud-based or on-premise? Apologies but I thought it would save time to ask.

    2. Also, I can open the files on my personal computer but when I copy them to my organizations network, they won’t open even when I rename them They must be blocked by our own security filters.