Expert Advice Community

Guest

ISO 270001 standard implementation

  Quote
Guest
Guest user Created:   May 14, 2020 Last commented:   May 14, 2020

ISO 270001 standard implementation

If the company has a server room, is it mandatory to have a disaster recovery site to be certified?

0 0

Assign topic to the user

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

Expert
Rhand Leal May 14, 2020

For ISO 27001 certification, a disaster recovery site is necessary only if you have relevant risks that are reduced to acceptable levels by implementing this approach, or if there are legal requirements (e.g., laws, regulations or contracts) demanding the implementation of this site.

If none of the above-mentioned conditions apply, then you do not need a disaster recovery site to be certified.

This article will provide you a further explanation about selecting controls:
- The basic logic of ISO 27001: How does information security work? https://advisera.com/27001academy/knowledgebase/the-basic-logic-of-iso-27001-how-does-information-security-work/
- Where to start from with ISO 27001 https://advisera.com/27001academy/knowledgebase/iso-27001-where-to-start-most-important-materials/

These materials will also help you regarding ISO 27001 implementation:
- Book Secure & Simple: A Small-Business Guide to Implementing ISO 27001 On Your Own https://advisera.com/books/secure-and-simple-a-small-business-guide-to-implementing-iso-27001-on-your-own/
- ISO 27001 Foundations Course https://training.advisera.com/course/iso-27001-foundations-course/

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

May 13, 2020

May 13, 2020

Suggested Topics