SPRING DISCOUNT
Get 30% off on toolkits, course exams, and Conformio yearly plans.
Limited-time offer – ends April 25, 2024
Use promo code:
SPRING30

Expert Advice Community

Guest

Corrective Action Plan

  Quote
Guest
Guest user Created:   Aug 30, 2019 Last commented:   Aug 30, 2019

Corrective Action Plan

I have a confusion on CAP sheet, is this made after audit or can it be included in the Audit Sheet or is it completely separate? (Read https://advisera.com/27001academy/blog/2013/12/09/practical-use-of-corrective-actions-for-iso-27001-and-iso-22301/) but not able to clarify.

Assign topic to the user

ISO 27001 RISK ASSESSMENT TABLE

Implement risk register using catalogues of vulnerabilities and threats.

ISO 27001 RISK ASSESSMENT TABLE

Implement risk register using catalogues of vulnerabilities and threats.

Expert
Rhand Leal Aug 30, 2019

In fact the three alternatives can happen:
- a Corrective Action Plan (CAP) can be elaborated after an audit, when the auditor formally states the nonconformities
- in some cases, depending on the auditor approach, a CAP can be elaborated during the audit
- a CAP can be elaborated after someone reports a nonconformity during normal operations, i.e., not associated to an audit activity

Please note that on all cases the purpose of the CAP is the same, to eliminate the causes of identified nonconformities

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Aug 30, 2019

Aug 30, 2019