Search results for "iso17025 vs gmp"

Guest

Guest

Create New Topic As guest or Sign in

HTML tags are not allowed

Assign topic to the user

  • Can small start up be ISO 13485 certified?

    ... ed in the following article: https://www.fda.gov/medical-devices/postmarket-requirements-devices/quality-system-qs-regulationmedical-device-good-manufacturing-practices

    For more information, see:

  • Assets

    ... standard. 

    See also: 

  • If 27001 was fully implemented and certified, would you pass a SOC 2 type 2 attestation?

    ... ified against ISO 27001 does not ensure full compliance with SOC 2 type 2.

    Please note that ISO 27001 can help implement some SOC 2 requirements, but SOC 2 has requirements of its own that are not covered by ISO 27001.

    For further information, see:

  • ISO 27001 certification needed

    ... iso-27001-vs-soc-2/" rel="nofollow ugc">https://advisera.com/27001academy/blog/2021/02/02/iso-27001-vs-soc-2/

  • ISO 27001 Foundations Course https://advisera.com/training/iso-27001-foundations-course/
  • ISO 27001 Internal Auditor Course https://advisera.com/training/iso-27001-internal-auditor-course/
  • ISO 27001 change process: 2013 to 2022

    ... ce audit, you need to align that with your certification body, so the audit plan can consider this.

    Please note that organizations have a three-year period (i.e., until October 31, 2025) to make the transition to ISO 27001:2022, so you can start your transition right now, but have plenty of time to make the transition.

    For further information, see:

  • Trying to map additions

    ... 7001 2013 vs. 2022 revision – What has changed? https://advisera.com/27001academy/blog/2022/02/09/iso-27001-iso-27002/

    3 - It probably is required to have internal audit done against 2022 version before certification?

    Answer:  Your assumption is correct. You will need to perform an internal audit against the 2022 version before certification.  

  • Free ISO 27001:2013 to 2022 Conversion Tool – find out what has changed

    ... rols:

    • A.8.1.1 Inventory of assets, and

    • A.8.1.2 Ownership of assets

    ... have merged into ISO 27001:2022 control: 

    • A.5.9 Inventory of information and other associated assets

    This is an example right from the tool.

    For further information about new controls introduced by ISO 27001:2022, please read:

  • BCM policy

    ... ... inuity Plan, and you can take a look at a demo of this document at this link: https://advisera.com/27001academy/documentation/business-continuity-plan/

    This article will provide you with a further explanation of Disaster Recovery: 

  • Offshore Requirements

    I have some customer requirements that I want to ask if they are already included in my scope or not. One set calls out Offshore requirements. We are a virtual company and everyone works remotely. I didn't plan to separate offshore vs. domestic work. Is that typical? Please let me know if these requirements will be fulfilled: I think these would be, but I don't quite understand Incident Response vs. Incident Plan vs. Incident handling - aren't these all covered by the same Policies and Procedures and part of the overall plan? IR-1.1 Develop policies and procedures for Incident Response. IR-6.1 Report security incidents to appropriate personnel or government authorities in a timely manner. IR-8.1 Develop a comprehensive Incident Response Plan for the organization. IR-5.1 Implement mechanisms for tracking and documenting security incidents. IR-4.1 Develop an incident-handling process for the organization. Does this have to be separate? Offshore-48 Complete a security assessment of the organization's offshore location(s) and/or third party's offshore location(s) annually. Offshore-20 Requires antivirus software to be active and up to date on workstations.

  • HIPAA vs ISO

    Hi! I have an app that is HIPAA compliant and hosted in the US. I would like to open it up to patients in Israel and am trying to figure out what it takes to become ISO certified and what part of that is already covered by HIPAA. It is a mental health app and we store personal data, although nothing about physical health. Thanks!

Page 12 of 123 pages

Didn’t find an answer?

Start a new topic and get direct answers from the Expert Advice Community.

CREATE NEW TOPIC +