ISO 27001 & 22301 - Expert Advice Community

Guest

Guest

Create New Topic As guest or Sign in

HTML tags are not allowed

Assign topic to the user

  • Obsolete equipment disposal

    I would like to know more information about some difficulties experienced by organisations in the disposal of obsolete equipment for ISO 27001
  • Audit report finding

    One of an audit finding on my department (XXXX) was "Information security policies and procedures need to be aligned with the industry standards such as ISO 27001." We are not ISO 27000 certified organisation but our main policies are set up according to ISO 27000:2005.
  • Information security certifications

    1 - what is a different between ISO 27001 vs CISA
  • Risk assessment template

    I am facing problem in expanding the vulnerabilities database in Risk assessment template. Though I can be able to include it in the database but it is not reflecting in the selection box. No issues with Threat database, can add and select from the list. Appreciate yours advise.
  • ISO 27001 implementation

    We are intending to get the ISO 27001 certificate for our data center, I need to know form where to start and what is the main step after the gap assessment
  • Training and awareness

    I can not find a video of the Training and Awareness? Is it available or does it not exist?
  • Risk management

    Regarding to your long experience in dealing with standards, could you please kindly help me how to build my model of risk management in some of standardized management system such as ISO 9001, 14001, 27001, 22000, and 45001. in other words how to start creating this model? Thank you in advance for your assist and help and looking foreword to get your reply as soon as possible
  • Control mapping

    Hi, WHat can be the root cause for not mapping controls in risk treatment plan (ISo 27001:2013)
  • ISO 27001 and NIST CSF

    What is the similarity of ISO 27001 with NIST CSF?
  • ISO 27001 Annex A controls mapping to products and solutions

    We are in a very tight budget, it is kind do it yourself kind of thing. Resource is very limited. The scope will be only on "Network Operation Center & Security Operation Center". Due to that there is NO fixed timeline given.