I have an accountant suggesting a 3402 statement instead of a ISO 27001 certificate. Does this make sense?
Integrated internal audit
1. Is any possibility of combining the internal audit process for both standards(9001 + 27k)?
Support contracts - are they required for ISO 27001?
We are in a situation that all support contracts for our environment have been expired and no intention from management to renew the support. It that a stopping for the ISO 27001 certificate.
Toolkit support
I am pushing my manager to purchase the ISO22301 tool kit and in the meantime would like to know how much you could help me with Disaster recovery drills and other desktop test to confirm our process is in line with BCM requirement.
Assessment criteria rationale
How do I explain the rationale to my Executives for the BIA- assessment criteria I used? I would have mapped it similarly to the criteria you would have used in the ISO BIA template.
Toolkits content and ISO 27001 requirements
How do I map the documents to each paragraph of ISO 27001? An example paragraph 5 of ISO is leadership. Which files from the toolkit apply to chapter 5 ?
Guidance on implementation project
Your resources are wonderful but I am still trying to wrap my head around all of it. I need a point to point project guide of where to start and where to stop.
Toolkit content ISO 27001
1 - Which document covers 4.1 Understanding of the organization and it’s context?
Certificación ISO 27001 en un grupo empresarial
¿Un grupo empresarial puede certificarse en la norma ISO 27001:2013 como grupo o tiene que hacerlo una por una?