ISO 27001 & 22301 - Expert Advice Community

Guest

Guest

Create New Topic As guest or Sign in

HTML tags are not allowed

Assign topic to the user

  • ISO 22301 Communication Plan

    We have sourced the ISO 22301 documents from Advisera. Our Corporate Communications team is asking me to create a "Communications Plan and Crisis Management" Document as part of our BCP update. I don't really see any type of template for a communication plan. Is there one in the ISO 22301 suite of documents? Thank you.

  • Question about PII data

    What about PII Data? It´s necessary to get a Policy or just to make a refence to the laws

  • Annex A

    1. I love your videos. I want to be clear on something. How do the clauses and the Annex A controls work together for ISO 27001?

    2. Please does the workshop explain and takes a person through the implementation process.

  • Cryptography Controls

    Can you explain the implementation of cryptography control?

    1. Which areas we need to implement in an organization.

    2. Example of encryption and decryption policies.

  • Leadership requirements

    Ya hice la fase de diagnóstico, en la parte de implementación hice macromejoras para abarcar los puntos que no cumple la institución, en una macromejora tengo la parte de liderazgo, que puedo desarrollar para cumplir los asquectos de liderazgo? Tomando en cuenta que el proceso es de lotería impresa.

  • ISO High-Level Structure for standards

    I know that the new HLS specification structure consists of 10 clauses .. and this is derived from the concept of the continuous improvement cycle (PDCA), and when the specification pane is set on the improvement cycle, we find that some sources considered clauses (7 and 8) represent (DO) while other sources considered that clause (8) alone represents (DO) and clause (7) will be within PLAN . I wish to give me the correct and official opinion of this case
  • Classification of information

    what are the types of data that need to be calssified? Does each and evey physical asset, documnet, data need to be classified?