Start a new topic and get direct answers from the Expert Advice Community.
CREATE NEW TOPIC +Guest
... 4/toolkit-vs-conformio-which-is-more-applicable-for-my-company/" class="content-link Link" target="_blank" rel="noopener nofollow ugc">https://advisera.com/conformio/blog/2021/06/24/toolkit-vs-conformio-which-is-more-applicable-for-my-company/
ÂDocument management in ISO 27001 & BS 25999-2Â :Â https://advisera.com/27001academy/blog/2010/03/30/document-management-within-iso-27001-bs-25999-2/
... ou ÂCISA vs. ISO 27001 Lead Auditor certification : https://advisera.com/27001academy/blog/2015/05/11/cisa-vs-iso-27001-lead-auditor-certification/
And also this article ÂQualifications for an ISO 27001 Internal Auditor : https://advisera.com/27001academy/blog/2015/03/30/qualifications-for-an-iso-27001-internal-auditor/
... ISO 27001 vs. ISO 27032 cybersecurity standard : https://advisera.com/27001academy/blog/2015/08/25/iso-27001-vs-iso-27032-cybersecurity-standard/ And this free eBook can be also interesting for you Â9 Steps to Cybersecurity : https://advisera.com/books/9-steps-to-cybersecurity-managers-information-security-manual/
... ISO 27001 vs. ISO 27032 cybersecurity standard : https://advisera.com/27001academy/blog/2015/08/25/iso-27001-vs-iso-27032-cybersecurity-standard/
And of course, can be very interesting for you our free eBook Â9 Steps to Cybersecurity : https://advisera.com/books/9-steps-to-cybersecurity-managers-information-security-manual/
... ISO 27001 vs. ISO 27002Â :Â https://advisera.com/27001academy/knowledgebase/iso-27001-vs-iso-27002/
Regarding the charge, depend on the organization where you want to implement the standard (scope, number of employees, etc), although typically the cost of the implementation for a company with 50 employees could be between $5.000 - $20.000. Anyway, this article can be interesting for you ÂHow much does ISO 27001 implementation cost? : https://advisera.com/27001academy/blog/2011/02/08/how-much-does-iso-27001-implementation-cost/Â
Finally, this free tool can help you to calculate the duration of an ISO 27001 implementation ÂFree Calculator  Duration of ISO 27001 / ISO 22301 Implementa tion : https://advisera.com/27001academy/free-tools/free-calculator-duration-of-iso-27001-iso-22301-implementation/
... recovery vs. Business continuity : https://advisera.com/27001academy/blog/ 2010/11/04/disaster-recovery-vs-business-continuity/
And also this article about the distance of the disaster recovery can be interesting for you ÂDisaster recovery site  What is the ideal distance from primary site? : https://advisera.com/27001academy/knowledgebase/disaster-recovery-site-what-is-the-ideal-distance-from-primary-site/
... entÂ, ÂTVsÂ, ÂDesktopsÂ, and any other group of assets that can be affected by the same threats/vulnerabilities, and this approach can reduce the risk assessment considerably.Â
But also keep in mind that if you change assets/process in your risk assessment, you will need to start from 0, applying a new methodology in a complex scope.
So, if you reduce your risk assessment but the number of assets is high, and you can assume the eff ort to change the risk assessment and start from 0, my recommendation is the risk assessment based on process (it is not a problem in the ISO 27001:2013, I mean, you can use a risk assessment based on process without problem, although with the old ISO 27001:2005 you could not). If not, I think that you should maintain your current risk assessment, reducing it.
Finally, this article about the risk assessment, can be interesting for you ÂISO 27001 risk assessment: How to match assets, threats and vulnerabilities : https://advisera.com/27001academy/knowledgebase/iso-27001-risk-assessment-how-to-match-assets-threats-and-vulnerabilities/
And also this article about problems with defining the scope can be interesting for you ÂProblems with defining the scope in ISO 27001Â :Â https://advisera.com/27001academy/blog/2010/06/29/problems-with-defining-the-scope-in-iso-27001/
... ... ISO 27001 https://advisera.com/27001academy/blog/2014/05/12/information-classification-according-to-iso-27001/
By the way, a company cannot get certified against ISO 27002, only against ISO 27001 - see this article: ISO 27001 vs. ISO 27002: https://advisera.com/27001academy/knowledgebase/iso-27001-vs-iso-27002/
... br>
Finally, this article can be interesting for you ÃÂCloud computing and ISO 27001 / BS 25999ÃÂ :ÃÂ https://advisera.com/27001academy/blog/2011/05/30/cloud-computing-and-iso-27001-bs-25999/
ÃÂ
And also this article about ISO 27001/ISO 27002 ÃÂISO 27001 vs. ISO 27002ÃÂ :ÃÂ https://advisera.com/27001academy/knowledgebase/iso-27001-vs-iso-27002/