ISO 27001 & 22301 - Expert Advice Community

Guest

Guest

Create New Topic As guest or Sign in

HTML tags are not allowed

Assign topic to the user

  • Assets analysis

    1. For People Asset dependency there is 2 dependencies, first other is depend on the asset, second the asset is depend on other. So, for example General Manager, who are depend on this asset, than what is this asset on? it goes to the other people assets like senior Managers, CIO, ICTSO.
  • Risk management tools

    I have started looking for risk management tools that I can start using. Till now I took a look at vsRisk from Vigilant. Do you have any suggestions of such tools that I can take a look on?
  • Succession plan

    Please help me to know how does Succession Plan falls under BCM? Are there any template for a company succession plan/strategy?
  • Risk treatment and risk treatment plan

    As per the videos related to Risk Management process the risk management process goes through below phases:
  • Controls for malicious attack

    I was going through one of your videos on Annex A controls.
  • NDAs and non-competition clauses

    therefore I'm interested how this can go trough audit or successful ISO certification.
  • Risk assessment frameworks

    I work in a big company related to sugar industry as IT AUDITOR and I need to implement a risk assessment to IT department, I have a two choices to select a framework COBIT 5 FOR RISK and ISO 27001 but I am not sure to select which of them, could you please help me to do this job step by step.
  • Operational change

    We are already certified by ISO 27001 and we are going to be Certified with ISO 22301 (according yours tools). On this period we are under implementation of a system upgrade on our servers to Windows Server 2016 with new machines (firewalls, switches, servers, backup tape drives etc) on our premises (our internal computer room).
  • Gap analysis and checklists

    1- I was assigned to handle the gap analysis of copy existing internal policy over iso27002 andvisms manual for physical and environmental control? Would you mind to provide your thoughts on this?
  • ISO 27001 and EU GDPR

    ISO 27001 and the EU GDPR coming into effect next year. How to kills two birds with one ISMS stone?