ISO 27001 & 22301 - Expert Advice Community

Guest

Guest

Create New Topic As guest or Sign in

HTML tags are not allowed

Assign topic to the user

  • RACI Matrix

    I am suppose to prepare RACI matrix for ISO 27001 implementation and I getting confused in it. Can you please help me with a generic format while we go for project base RACI matrix preparation?
  • ISO 27001 Gap Analysis

    As I mentioned in my invitation i started my graduate internship (establishing / implementing ISMS). But I am kind of lost already. What I am doing now is getting to know the organization. And they have implemented iso 9001:2008 almost 2015 version. They already have some measures in place selected from the iso 27002.
  • Audit activities

    I have a question, and it’s kinda crazy. We recently had our internal audit. The auditor said to us, since they the internal audit, could not audit management clause 9.2, but we the client had to audit the auditor. Of all my years, and all my audits, I have never heard of this.
  • Impacts of not implementing a standard

    What are key questions, statistical reports, law topics, company related consequences "if ISOXXXXXX is not implemented in your company...".
  • Implementation duration

    We have around 250 employees, and I'm starting to gather people for the project of the ISO 27001/22301/27018 implementation. Can you please advise me, based on your experience, how long the process could last, and how many people we should include in this project?
  • Business Case for the implementation of an ISMS

    Is a Business Case for the implementation of an ISMS mandatory?
  • Preparation of the ISO27k Lead Auditor Exam

    I have joined the webinar about the preparation of the ISO27k Lead Auditor Exam.  I am wondering :
  • Courses for consultants

    Can you please suggest me the training courses applicable for Conformity and Certification Services?
  • Procedure for A.18 Complaince

    I downloaded a sample for templates for ISO 27001 documents. But it doesn't include the "procedure for A.18 Complaince". Can you please share a sample?
  • Operations security

    1 - Hi, does the control "A.12. Operations Security" in Annex A of ISO 27001 standards apply to server systems (where the applications/services are actually running) or the employee laptops/PCs (company assigned) ?