ISO 27001 & 22301 - Expert Advice Community

Guest

Guest

Create New Topic As guest or Sign in

HTML tags are not allowed

Assign topic to the user

  • ISO 27001 standard

    Compulsory reading is the ISO 27001 text. Where can I find this? I does not seem to be in the set of documents we received from you.
  • ISO 27001 Mandatory documentation

    I have a question for you with regards to Document Control for ISO 27001. In the Checklist of Mandatory Documentation Required by ISO 27001:2013 it lists Procedure for Document Control as a Commonly Used Non-Mandatory Document however when I read the Document Management in ISO 27001 Blog dated March 20, 2010 it states that you won’t get certified if you do not have a Procedure for Managing Documents. These 2 information sources appear to be in conflict to me. Could you provide me with some details please?
  • Un sólo documento o varios

    Estoy implementando el SGSI en mi organización y quisiera saber si puedo tener un solo documento el alcance, políticas, objetivos, funciones, responsabilidades en un soló documento y no cada uno por separado.
  • Information security and ISO 27001 topics

    Sou estudante de Logística na XXXX e necessito elaborar um trabalho acadêmico sobre a ISO 27001 solicitado pelo professor de XXXX.
  • Specification of Information System Requirements

    1 - Appendix – Specification of Information System Requirements: Do you have a video of how I can fill in this document?
  • ISMS implementation approaches

    I have a situation here:
  • ISO 27001 and other security frameworks

    Can any of below listed frame works are more or less / equivalent to ISO 27001
  • Asset inventory

    I am working on information assets inventory sheets and have some doubts concerning what assets should be recognized. Each of our units/departments have a few processes and for each process inventory sheet needs to be developed. One of our unit responsible for physical and environmental security develops a sheet for the process: Physical and environmental security. We decided to classify our assets in accordance with ISO 27005, so above process and specified information as primary assets are supported by different categories like personnel, IT solutions and site. I am wondering, when we identify the assets for site supporting category in this process, only rooms of above department employees should be include or we should identify all rooms and locations of our organization? I believe all of them should be included so we can fully asses the risk for these rooms and locations in the next steps?
  • Template content

    I have the templates already but I need to know if possible which document contains a18.2.3 technical compliance
  • Certificar personas en una implementación ISO 27001

    Sabes si como requisito de la certificación ISO 27001 de la empresa tiene una cantidad de personas que tienen que estar certificadas