1 - Is there anyone else in your group that does Risk Management and Internal Audits for ISO 17025 “Calibration Certifications”?
2 - If not, will the templates in both your Risk and Internal Audit books provide enough guidance to apply elsewhere?
ISO 27001 and EU GDPR trainings
I wanted a training on infosec and data protection and need some advice on them... which will be the best course for me ISO 27001 and EU GDPR?
ISO 27001 implementation
I’m currently undertaking an ISO 27001:2013 project which is in the planning stage, I spoke to my boss about how I was going to implement this, stage by stage e.g. get project buy in and how to start scoping the ISMS etc.
Cloud toolkit
Considering the answer:
Risk Register vs Incident Log
Are the risk register and incident log mutually exclusive or complementary documents? Are they both strictly necessary?
¿Apéndices en la ISO 22301?
Cuando en la norma ISO 22301 hablan apéndices a que se están refiriendo?
ISO 27017 and ISO 27018 certification
In, 2018, can a organization be ISO27017 and ISO 27018 certified without being ISO27001 certified?
Maximum Allowable Outage and non financial impact
Can the non financial impact stand alone? So I could have a high non financial impact and low financial impact, how would the MAO be calculated?
ISMS implementation
I have gone through various documents available on internet on steps to implement ISMS in an enterprise like Secure executive support,Define the scope of the system. I need to understand how actually we perform these steps in live situation.Like define the scope.Now what is the first step I have to do and then what will be the next step.Is there any descriptive document which I can refer for implementation of ISMS in an IT enterprise.
Procedure for identification of requirements
In regard to the ISO 27001 templates which we have recently purchased, I am looking at the one entitled “Procedure for identification of requirements”.