ISO 27001 & 22301 - Expert Advice Community

Guest

Guest

Create New Topic As guest or Sign in

HTML tags are not allowed

Assign topic to the user

  • Project scope definition

    I want to know that what would be the questionnaire, which is share by the vendor to client before defining scope of an organisation in ISMS process, In which the vendor asks about, lets say .. about the devices and server, network device. I hope you understand this.
  • IEC 62443 and ISO 27001

    I would like to get obtain more information regarding comparison between IEC62443 and ISO 27001. We were planning to obtain the ISO 27001 for our one of the software product and then some of the employees were exposed to information about the IEC62443. Can you please advise?
  • COBIT and ISO 27001

    We would like to know if able to help us to implement COBIT in our organization.
  • Risk assessment process

    Need some advise from you with regards to the ISMS Risk Management
  • Project budget

    I looked at the diagram of ISO 22301 and in the beginning of the project you are supposed to write a Budget; Human resource plan.
  • Facilities protection

    I would need your recommendations on Best practiced standards for preventive measures that must be put in place to protect a hotel facility . In clear teams, i need list of preventive measures required for the protection of a hotel facility
  • Toolkit documentation

    I have purchased the 27001 / 22301 premium collection. When I look at the Annex A section A.6 Organization of information security I do not have any document templates for A6.1.1, A6.1.2, A6.1.3, A6.1.4 or A6.1.5? Where are these document templates?
  • Security requirements checking and testing

    Under secure development - checking and testing the implementation of security requirement can you please explain:
  • Business Continuity Strategies

    I work on the BC strategy document. Please explain where should I define detailed recovery strategy for individual applications. The various critical activities defined by BIA analysis use xxxxxxx as an application that access the servers and it is absolutely critical, but I was wondering where and how to define recovery for the xxxxxxx - whether as a separate Activity recovery plan (which I would perhaps call application recovery plan ) or otherwise?
  • ISO management systems compatibility

    I am working with development of an Integrated Management System for Quality with the ISO 9001,2015 as the base standard and ISO 22002 and ISO/TS 22002-1 Pre-Requisite standard for FOOD SAFETY, into Clause 6 of ISO 9001.2015 ( Risk Based Thinking).