Start a new topic and get direct answers from the Expert Advice Community.
CREATE NEW TOPIC +Guest
If a minor nonconformity, raised during the previous audit, has not been resolved within the deadline – such a small nonconformity automatically becomes a major one.
You can find more information in the following links:
In ISO 9001 if minor NC repeated in 2 consecutive audits, will it be a major NC
... ISO 45001 vs OHSAS 18001 the main changes, https://advisera.com/45001academy/webinar/iso-45001-2017-vs-ohsas-18001-2007-the-main-changes-on-demand/ or you have questions on the changes you can sign up for the next webinar presentation on this topic which is occurring on July 15th, 2020, here: https://advisera.com/45001academy/webinar/iso-45001-2017-vs-ohsas-18001-2007-the-main-changes/
Please include information regarding the links between Clause 4 and Clause 9. ie:
1. How can we be sure we have identified all the internal and external issues?
2. How can we be sure we are monitoring and measuring them effectively?
... onsultant vs. DIY approach https://info.advisera.com/27001academy/free-download/implementing-iso-27001-with-a-consultant-vs-diy-approach
Advisera is specialized in the third approach. We offer toolkits with templates and expert support, and also free material in the form of articles, papers, and webinars, to help you with your implementation project. Please see these materials for more information:
... t of time vs trying to match them one by one.
3. When creating the risk assessment using the Asset-Threat Vulnerability method and assigning a Likelihood do we take into account the current state of that risk given our already implemented (pre-ISO27001) controls? i.e. if we have multi-factor authentication the risk of access to our email system is lower, therefore would we put a lower number for likelihood? I assume this is the case, but am not clear.
4. Do you suggest using the OCTAVE Allegro worksheets (or something similar) for polling the risk owners while creating the Risk Assessment, or is there a questionnaire available that can be sent to them with specific questions that I am missing?
... 2301:2012 vs. ISO 22301:2019 revision – What has changed? https://advisera.com/27001academy/blog/2019/12/02/iso-22301-2019-vs-iso-22301-2012-key-changes-infographic/
... i>EU GDPR vs. European data protection directive: https://advisera.com/eugdpracademy/blog/2017/10/30/eu-gdpr-vs-european-data-protection-directive/
You may also consider enrolling in this online EU GDPR Foundations Course:
... p>... sed)
This article will provide you a further explanation about the use of tools: