I am in process of filling the ISMS Training and Awareness Plan Template and there is no online training. Is it possible for you to share a completed template please?
ISO 27001 and NIST
I am about to join a company as the IT security person. Thus, I would like to implement NIST framework inside the company but I am not sure how much your solution (ISO27001 Documentation Toolkit) can help me to do so. I dont have the experience in implementing of ethier one, NIST and ISO27001.
ISO 27001 foundations course
I am more of an ERP application security administrator. Slowly trying to switch gears into Cyber Security side of things. Given my background do you see any advantage for me to take the ISO 27001 Foundations. I am already CISSP certified.
Materials for large organizations
I’m working for a large organisation and I’m trying to put forward a business case to purchase more of your content. I noticed that your policies etc are more suited for small to medium enterprises – do you have any advice/tips on how I can modify these policies for use in a large organisation?
BYOD Policy
I’m working on “08.4_Bring_Your_Own_Device_BYOD_Policy_EN” policy. I’m having a bit of a hard time to compile a list of acceptable and prohibited devices/setting/applications.
Sistema de gestión integrado
En nuestra empresa, tenemos un Sistema de Gestión Integrado, ISO 9001, ISO 14001 e ISO 18001, y ya contamos con un Procedimiento de Control de Documentos del SIG, ¿se puede usar el mismo? Ya que queremos agregar la norma ISO 27001
Responsabilidades en el SGSI de una pequeña empresa
En el documento de la politica de seguridad se definen las responsabilidades de los diferentes cargos que estan involucrados en la seguridad de la información. Nosotros somos una empresa pequeña de no mas de 15 personas y por obvias razones no tenemos tantos puestos como los definidos en las actividades,.Mi pregunta es., ¿es aceptable que un cargo desarrolle varias actividades relacionadas con la Seguridad de la información?
Toolkit templates
We need your support prepare following documents for ISO 27001:2013 recertification process:
ISO 27018
ISO 27018 is certification e.g. organization can get ISO 27018 certified or its a code of practice to comply with?
Controls applicability
Hello, is it absolutely mandatory under the ISO guidelines to install an antivirus application onto the devices of my employees?