What are alternatives method for Asset based Risk Identification?
Differences between process based and asset based risk assessments
What is exactly difference criteria for process based and asset based risk assessment ?
ISO 27001 implementer
As internal auditor should I obtain ISO 27001 implementer also?
Toolkit content
Hello, I have been working with the forms to implement the standard 27001, I look for: ISO 27001 project (Spanish) / Files and I do not find the documents to be able to implement these points of the standard:
ISO 27001 map to NIST
I am working on a bid for an ISO 27001 project, creating information security standards documents that are aligned with ISO 27001, but which also map to NIST CSF, NIST 800-53, NYS DFS 500, and GLBA.
ISO 22301 certification
Can you recommend any training institutions for ISO 22301 personal certification? Preferably online.
ISO 27001 implementation project
I would like to understand how best to start a project to obtain ISO 27001 audit and certification for our company?Evaluating ISO 27001 vs HITRUST certification.
Corrective action form
I have a question about a document we have to create in relation to the procedure for incident management and in relation to the list of incidents. I talk about a form for corrective actions. Can you explain a bit more about that form beside the comment in the template. Which presentation form would you recommend (in the intranet, in a folder, in our own application software). Can you send me an example for this form?
Control of document and records requirements
I have another question about the procedure of directing documented information. The template talks about font size 11 for regular document text (regardless of the headings). Each content of the templates has font size 10. Do I need to change that to font size 11 (if I like to follow your template requirements)? I couldn’t find a separate description for the content which talks about font size 10.