Start a new topic and get direct answers from the Expert Advice Community.
CREATE NEW TOPIC +Guest
I am trying to find out if EU Directive 95/46/EC still exists or if it has been formally replaced by GDPR.
... ISO 27001 vs. ITIL: Similarities and differences https://advisera.com/27001academy/blog/2016/03/07/iso-27001-vs-itil-similarities-and-differences/
These materials will also help you regarding audit:
... ISO 27001 vs. ISO 27002 https://advisera.com/27001academy/knowledgebase/iso-27001-vs-iso-27002/
This material will also help you regarding controls implementation:
... ISO 27001 vs. Cyber Essentials: Similarities and differences https://advisera.com/27001academy/blog/2017/09/11/iso-27001-vs-cyber-essentials-similarities-and-differences/
... 4001:2015 vs. EMAS: Which one to go for? - https://advisera.com/14001academy/blog/2018/04/03/iso-140012015-vs-emas-which-one-to-go-for/
... ... nformation security management system youâve already implemented, and what you still need to do.
In case you are a small company, the scope of the implementation will most probably be their whole company because this will be the easiest for the implementation.
This article will provide you a further explanation about the gap analysis:
... ce visits vs. certification audits https://advisera.com/27001academy/knowledgebase/surveillance-visits-vs-certification-audits/
These materials will also help you regarding internal audit:
What is the most important diference between 18001 and 45001?
My company has purchased your workshop and documentation toolkit for the ISO 27001 Implementation. We are working on the documents and the statement of Applicability is posing a real challenge.
One thing though I want to be clear on, in your documentation, folder 02 (General policies), I see the information security document which is a relatively short document and not very detailed. However, in the statement of Applicability, I see reference is made many times to the IT Security Policy, which means it should be quite an extensive document.
Please is the Information Security Policy the same as the IT Security Policy?