¿cuales son las fases para implementar un SGSI con la norma ISO 27001?
Procedure for document and record control template content
The tekst below is from the 00_Procedure_for _Document_and_Record_Control
Attending a lead auditor course
I have recently completed the Internal Auditor Certification, I read that you must have 4 years experience in order to get the Lead course, or to get Lead Auditor Certified? If my previous auditing experience is with another Standard, does this count towards the time to become a lead?
Business Continuity coordinator
Normally who is chosen to be the BC Coordinator during the implementation? Is it the person writing the documents and planning the projects or is it a facilities manager?
Information security behaviour evaluation
1 - I am a graduate student in information security. I want to examine the behaviour of employees in the field of information security in the organization. For this purpose, I intend to use the ISO 27001 standards for evaluation. I did a lot of research in this field but unfortunately I could not get the right answer and I would ask you to guide me in this area. Now, my question is: can one assess the behaviour of an employee in terms of observing the security principles, such as "not submitting the organization's information on social networks", and so on, using ISO standards? Or are these standards only applicable to the assessment of organization information security at a higher organizational level?
BIA Questionnaire
Hello, I’m hoping you could help me with a question regarding the BIA questionnaire.
Selection of controls
We have done the risk assessment and I am working on the Statement of Applicability. We want to include EU DGPR in our company, but I am a bit insecure in how we shall do this in the most effective way.
Template comment
What does the tekst in the remark mean?
Text: "The document header contains organization name and *confidentiality* *level*. The footer contains document name, current version and date of document, and number of pages.
Comment (for bold words): Delete if under ISO 27001 the Statement of Applicability excludes control 8.2.1
ISO 27001 certification
1 - What would be the procedure to get ISO certified on a WordPress website?
Video tutorial content
In the Advisera video on #110 Document Control Procedure the actual document from the toolkit looks different from the one shown in the video. Does this mean that the videos are not quite up to date? How do I handle these differences because they already had me searching for explanations or documents that are not there, like “Policy for handling classified information”.