I am pushing my manager to purchase the ISO22301 tool kit and in the meantime would like to know how much you could help me with Disaster recovery drills and other desktop test to confirm our process is in line with BCM requirement.
Assessment criteria rationale
How do I explain the rationale to my Executives for the BIA- assessment criteria I used? I would have mapped it similarly to the criteria you would have used in the ISO BIA template.
Toolkits content and ISO 27001 requirements
How do I map the documents to each paragraph of ISO 27001? An example paragraph 5 of ISO is leadership. Which files from the toolkit apply to chapter 5 ?
Guidance on implementation project
Your resources are wonderful but I am still trying to wrap my head around all of it. I need a point to point project guide of where to start and where to stop.
Toolkit content ISO 27001
1 - Which document covers 4.1 Understanding of the organization and it’s context?
Certificación ISO 27001 en un grupo empresarial
¿Un grupo empresarial puede certificarse en la norma ISO 27001:2013 como grupo o tiene que hacerlo una por una?
Toolkit content
I am a bit confused with getting conflicting information. In your White Paper: Checklist of Mandatory Documentation Required by 27001 it says that the Procedure for document control is not mandatory but in the video by Dejan on Conformio it says that it is one of four mandatory procedures for 27001 - it is concerning that the information is contradictory - can someone tell me which rule to follow? Also I am finding differences between the templates and the document run through on the video with Information Security Policy being a good example. Which is out of date?
ITSM and Business Continuity competencies
I am already LA for 9001:2015, 27001:2013 and 18001:2007. I need to enhance my skills for ITSM and Business Continuity. Please advice the plan.
Certifications differences
Question: Can you explain how the ISO 27001:2013 Internal Auditor Course relates to Lead Auditor, CISA, or CISSP certification?
Becoming compliant with ISO 27001
I have been given the task of ensuring that within our network groups "2 separate units" I shall prepare and plan for the necessary step to be compliant to ISO 27001.