Are there any KPI/ metrics that can be measured and reported directly on ISO27001 or 22301?
Auditing a server
I want to know how the auditing of server, active directory, backup, change management, patches happen while we audit ISMS?
Multi location
what is Multi location split of project
Making the transition from 2005 to 2013 revision of ISO 27001
Say the company has ISO 27001 already and wants to update to 2013 version - is this done with the assessing body, and is there a seminar that covers this on your course ?
Contents of the Risk assessment report
Can you confirm if the Risk Assessment Report should contain all the results of risk assessment (ie acceptable risks and non-acceptable risks? based on the risk values that have been deduced? And the risk appetite of the business
Risk assessment for ICS or SCADA?
Is there any specific risk assessment for ICS or SCADA ? NIST 800-82
Risks in many site offices
Could you please let me know how should I assess risks and document the same when I handle many site offices spread across and each having different levels of threats. Could you please share with me a typical folder structure of what must be included in my network documentation to achieve ISO 27001 cert got example. I am having a central head quarters with many site offices.
Requirements for an internal auditor position?
What requirements are needed for an internal auditor position?
Auditing the ISMS
Please help in auditing the ISMS. How we start and all the process. What are the main things that auditor look for in isms auditing?
ISO 27001 vs NIST, CIS and Common Criteria
How does the ISO 27001 compare ( differences, advantages and limitations) to other frameworks such as NIST CSF , CIS Critical Controls and Common Criteria ? AND How does an organisation decide which framework is suitable for it ?