Expert Advice Community

Guest

15.2.2 managing changes to supplier services

  Quote
Guest
Guest user Created:   Dec 23, 2019 Last commented:   Dec 23, 2019

15.2.2 managing changes to supplier services

15.2.2 managing changes to supplier services - ee have a major non-conformity on this point. Can you advise on remediation in a timeline of 8 weeks?
0 0

Assign topic to the user

ISO 27001 SUPPLIER SECURITY POLICY

Define how suppliers and partners need to keep your information safe.

ISO 27001 SUPPLIER SECURITY POLICY

Define how suppliers and partners need to keep your information safe.

Expert
Dejan Kosutic Dec 23, 2019

It is difficult to provide an advice without knowing what exactly was your nonconformity - in general, when you make changes to the existing contracts with your suppliers you need to take into account the results of risk assessment, and how critical is the data they have access to. 

See also these articles:

If you can provide more details on your nonconformity, I can give you a more precise guideline. 

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Dec 23, 2019

Dec 23, 2019