Expert Advice Community

Guest

Audit results

  Quote
Guest
Guest user Created:   May 26, 2018 Last commented:   May 26, 2018

Audit results

Our Sales Department would like to share our ISO 27001 Internal and Certification Audit results with a customer of ours. We are still in the process of implementing the standard and have not had our first audit yet.
0 0

Assign topic to the user

ISO 27001 LEAD AUDITOR COURSE

Become an ISO 27001 certification auditor.

ISO 27001 LEAD AUDITOR COURSE

Become an ISO 27001 certification auditor.

Expert
Rhand Leal May 26, 2018

I believe somewhere in your information you recommend against sharing audit results with the customer. If this is true, could you send me a link to that information? It will help to convince Sales that this is not a good idea.

Answer: The sharing of audit results with customers should be handled carefully. While this can be a good marketing tool to demonstrate good faith and commitment of your organization with customers, it also may reveal situations that can compromise the relationship and your organization image if not handled properly.

My advice would be for your organization to define, by means of contracts and service agreements, in which situations these results should be shared, what information would be sha red, and what measures should be taken by the customer to protect this information (e.g., those customers that will have the access to the results should sign a non disclosure agreement).

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

May 26, 2018

May 26, 2018

Suggested Topics