ISO 27001 & 22301 - Expert Advice Community

Guest

Guest

Create New Topic As guest or Sign in

HTML tags are not allowed

Assign topic to the user

  • Filling templates

    1. Do I need to leave the basic outline in the version history or can I start with my own first draft (of course not touching the copyright, but does version 0.1 need to stay)?
  • Risk assessment

    I'am looking for some good examples or ways to gather security risks..I did go through your webinar..on risk..but practical approach..blogs any
  • Filling template Key Contacts for Business Continuity

    I have completed Appendix 5 – Key Contacts for Business Continuity and I noticed that there was a column for home address. I think that having everyone’s mobile number would be sufficient as I don’t think that people would want their home address included in the list. Is it necessary for ISO 22301 certification or can I remove the column?
  • Risk assessment template

    We are currently working with the Advisera ISO 27001 toolkit and we are running into some problems while filling out 05 – Bijlage 1. Do we have to put in every risk of every company asset in the Bijlage 1? If so, do you have an example how this would look? Our problem is that we think we are going to put in way to much and as a result spent to much time on it.
  • Filling template

    We are writing to check if you can provide us a sample Appendix 1 Risk Assessment table as we are finding the assessment process bit difficult.
  • Sharing resources

    We're moving into a new office soon and we're looking at becoming ISO 27001 within the next 12 months. We have a sister company that is insisting that we can all share the same network cabinet, but I am strongly opposed. If we do share a network cabinet, what are the complications for 27001 in the future?
  • Information labeling

    The policy for information classification defines in section 3.3 how the classification-level should be marked. I have a question about the information systems. Our company is using phpMyAdmin. How shall we implement the requirement there?
  • Audit procedure

    Would you have any info or reference on how to build an audit protocol, please?
  • Backups

    Somos un centro comercial, donde estamos interesados en saber y asesorar, cómo podemos manejar nuestras copias de seguridad, cómo se deben hacer y según la norma cómo debemos almacenar y asegurar estas
  • IT strategy

    Do you by any chance have an "IT Strategy" document for a Small SME based in Europe? The document would need to align the main goals for corporate strategy and describe in short how the goals would be achieved.