During an ISO 9001 Internal audit, what information is considered as personal data?
Resources for ISO 27001 Exam
My company has booked my exam with APMG (ISO 27001:2013 Foundations exam). I have tried to use their sample exam after studying Secure and Simple, but I feel contents of this book doesnt satisfy the requirements of APMG exam. Can you please suggest how to prepare or what sources I need to pass the exam?
Writing a non conformity
Is it possible you can share an example of doing a CARS in practice? How to report in CAR for the non conformance and record the Finding, Requirement, Evidence and Relevant Clause.
Template content
When trying to update data in the Appendix_1_Risk_Assessment_Table in the Consequences and Likelihood columns I receive the Values 0, 1 or 2 Allowed yet no indication is given as to what 0,1 or 2 represent.
Risk assessment and treatment process
I watched a PECB presentation on YouTube in which a presenter placed SoA as the last step in the risk management process. This contadicts with what you have written in your book.
ISO standard selection
What would be the correct ISO Standard for the following:
ISO 27001 and ISO 20000
We have ISO27001 certificate, but our client is looking for ISO20000 for system management and operation certificate, need your advice whether we should go for ISO20000 certification?
Risk assessment methodologies
What is your opinion on FMEA risk assessment methodology? What is the simplest and easiest (acceptable) risk assessment methodology for ISMS?
Compliance questionnaire
Estou fazendo um trabalho acadêmico (Artigo) sobre segurança da informação no qual eu tenho que elaborar um questionário com o objetivo de analisar a aderência da segurança da informação adotadas nas empresas com a norma ISO 27002.
ISO 27001 standard course
I am going through course for 27001 standard and I noticed it's not updated to a new format of the standard. I believe it's 14 clauses now and 111 controls in Annex A.