I'm in need of a checklist that will help my software development company to prepare for the ISO 27001, my logic is that if i know all the questions asked by the auditor in a external audit, i can ask myself the same questions and see if my team is ready. May I request your advise in getting the in depth questions i need to ask the IT Team, HR Team, Finance Team, QA Team, Architecture, The Development Team , Network Team, Design Team, Cloud Support Team, Application Support Team. Are the checklist that i can use as the basis of asking them and myself to prepare for this?
Control applicability
We currently have not outsourced complete software development but there are some application we acquired from third parties (Those application are general not specially developed for us) but we request some new features and customization time to time, so the make necessary changes for us, in this case the control Outsourced development is applicable for us? I look forward to your advise on this.
Presentation material
Can you give me a structure to follow, writing a guidance document for Top Management concerning the implementation of a BCMS. This is to include all Professional Practices covered by the GPG 2018?
BCMS implementation
I would like to know how or where to start to implement in Business Continuity Project for a Finance.
ISO 27001 presentation and training
Some time ago I acquired the package for the implementation of ISO 27001. I am finally starting the deploy of the necessary tasks to implement. I wanted to ask if they have any documentation that can help me in a training or talk so that the employees of the company understand why we will implement the standard.)
Australian version of ISO 27001
I came across this standard "AS ISO/IEC 27001" while self-studying. I looked it up on internet and figured out that this is Australia standard reproduced from ISO/IEC 27001 standard. I am unable to understand the difference between these two standards and why there is a need of two standards with similar structure. Would you mind answering the question to help me to understand?
Lead implementer and lead auditor
Please help in understanding the difference between the lead implementer and lead auditor course.
Implementing business continuity
We are a manufacturing company which is producing a three products and export them worldwide. our company consist of many functions as other companies, we have the operation, maintenance, procurement, hr, finance, marketing, IT, safety, etc..
Legal requirements for Business Continuity
We started working on our BCMS using your toolkit and I have a question. What would the typical pieces of legislation include that relate to Business Continuity? I also reviewed the link on your website below but it does not include any United Arab Emirates BCMS Legal Requirements,