External documents
We are implementing an ISMS helped by your ISO27001 documentation. In the first document (00_Verfahren_zur_Lenkung_von_Dokumenten), a post entry registry for external documents is asked for. Could you please give me examples of the kinds of documents that would have to be registered there?
Assign topic to the user
External documents are any documents not owned or controlled by an organization that are required to its operation, either mandatory or voluntarily adopted. Examples of external documents to be controlled are Laws (e.g., SOX and EU GDPR), standards and regulations (e.g., the ISO 27001 itself), and documents and records from customers, suppliers, and partners (e.g., contracts, service agreements, product/service specification, operation manuals, etc.)
These materials will also help you regarding control of documents:
- Free video tutorial that you received as part of your toolkit: How to Write ISO 27001/ISO 22301 Document Control Procedure
Comment as guest or Sign in
Dec 17, 2019