How essential is a 'Scope Diagram' in the Scope Document?
Assign topic to the user
From my point view this diagram is not relevant for ISO 27001 (it is not mandatory), although obviously you need to identify all departments/domains that are included in the scope of you ISMS, and if you include this information in a diagram, for some people (for example auditors) can be easy to see the hierarchy.
This article can be interesting for you “How to define the ISMS scope” : https://advisera.com/27001academy/knowledgebase/how-to-define-the-isms-scope/
Comment as guest or Sign in
Jun 27, 2016

