Expert Advice Community

Guest

Calculating ROI for ISO 27001 ISMS implementation program

  Quote
Guest
Guest user Created:   Feb 26, 2021 Last commented:   Feb 26, 2021

Calculating ROI for ISO 27001 ISMS implementation program

How the best way to calculate the ROI for a ISO27001 ISMS implementation program?
0 0

Assign topic to the user

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

Expert
Rhand Leal Feb 26, 2021

The best way to calculate the Return on Security Investment (ROSI) is to relate the investment in information security with the economic benefits that this will bring to the business. The calculation of the ROSI can be based on:

  • Costs of incidents by taking into account all the relevant costs if an incident occurs and the probability of an incident. These are some types of incidents: Malicious activity (virus, trojan horses, etc.), unintentional human error (delete critical information by error, etc.), system errors/malfunctions (hardware failure, etc.), natural disaster & force majeure (earthquake, flood, etc.)
  • Costs of security measures/controls and the level to which the risk of this incident would decrease because of such mitigation

This free tool can be very useful to give you an idea of how to calculate ROSI:

This article can be also interesting for you:

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Feb 26, 2021

Feb 26, 2021

Suggested Topics