Expert Advice Community

Guest

Information security in project management

  Quote
Guest
Guest user Created:   Jul 06, 2020 Last commented:   Jul 06, 2020

Information security in project management

What are some of the evidence you can show as demonstrating the practice of information security in project management

0 0

Assign topic to the user

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

Expert
Rhand Leal Jul 06, 2020

In short, you can think about the inclusion of information security in project management as if you are going to implement a small ISMS that will fit the project's needs and be proportional to the project's lifetime and budget.

Considering that, these are some evidence you should consider:

  • definition of information security objectives and include them in the project objectives, the same way you define information security objectives for an ISMS aligned with the organization's objectives, the only difference is that these objectives are restricted to the scope of the project.
  • initial and regular information risk assessment in the project and identification of applicable legal requirements, like you would do it with other business processes, to identify necessary controls (the controls you mentioned should be based on this step)
  • evidence related to the implemented controls (e.g., backup media, in the control A.12.3.1 Information backup is implemented).

This article will provide you a further explanation about Information security in project management:

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Jul 06, 2020

Jul 06, 2020