SPRING DISCOUNT
Get 30% off on toolkits, course exams, and Conformio yearly plans.
Limited-time offer – ends April 25, 2024
Use promo code:
SPRING30

Expert Advice Community

Guest

Certified providers

  Quote
Guest
Guest user Created:   Oct 11, 2018 Last commented:   Oct 11, 2018

Certified providers

1. Is Google GSuite hosted on Cloud ISO 27001 compliant?
0 0

Assign topic to the user

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

Expert
Rhand Leal Oct 11, 2018

Answer: According to Google information (https://gsuite.google.com/learn-more/security/security-whitepaper/page-5.html), Google GSuite is ISO 27001 certified by Ernst & Young CertifyPoint, an ISO certification body accredited by the Dutch Accreditation Council. A copy of the certificate can be accessed through this link: https://services.google.com/fh/files/misc/eycp_2018_gsuite_iso_27001.pdf

2. In Office 365 hosted solution will we clear all the ISO 27001 controls?

Answer: According to Microsoft information (https://aka.ms/o365iso27001cert), Office 365 solution is ISO 27001 certified and all ISO 27001 controls from Annex A are applicable to its scope (https://aka.ms/o365isosoa)

3. Can we pass the ISO 270001 audit with Office 365 cloud based solution?

Answer: Probably yes, but you have to evaluate carefully the SoA for Office 365 to verify if the way the controls are implemented will fulfill your needs.

It is important to note that for the certification audit it is much m ore important how an organization controls their service providers than which certificates do service providers have.

These articles will provide you further explanation about security with suppliers:
- 6-step process for handling supplier security according to ISO 27001 https://advisera.com/27001academy/blog/2014/06/30/6-step-process-for-handling-supplier-security-according-to-iso-27001/
- Which security clauses to use for supplier agreements? https://advisera.com/27001academy/blog/2017/06/19/which-security-clauses-to-use-for-supplier-agreements/
- How to perform an ISO 27001 second-party audit of an outsourced supplier https://advisera.com/27001academy/blog/2017/10/10/how-to-perform-an-iso-27001-second-party-audit-of-an-outsourced-supplier/

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Oct 11, 2018

Oct 11, 2018

Suggested Topics

Guest user Created:   Jun 30, 2021 ISO 27001 & 22301
Replies: 1
0 0

ISO 27001 questions

Guest user Created:   Mar 02, 2021 ISO 27001 & 22301
Replies: 1
0 0

ISO 27017