Expert Advice Community

Guest

ISO 27001 implementation

  Quote
Guest
Guest user Created:   Jul 04, 2019 Last commented:   Jul 04, 2019

ISO 27001 implementation

I only have a question but not about the ISMS scope because I was told by my friend that if I don't have any knowledge about Project management and business analysis at all, that ISO 27001 will be difficult for me to understand. He said in ISO 27001 there is a part you have to implement a project and if I don't know anything about PM and BA I can't do that. So my question is must I have a knowledge about PM and BA before any ISO?
0 0

Assign topic to the user

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

Expert
Rhand Leal Jul 04, 2019

Answer:

Although knowledge on PM and BA can make easier the ISO 27001 implementation, this knowledge is not mandatory, because there are at least three approaches for an ISMS implementation:
- Use your own staff to implement the ISMS (this is the case where knowledge on PM and BA is most needed)
- Use a consultant to perform most of the effort to implement the ISMS
- Use a consultant only to support the staff on specific issues, leaving the organization's staff with most of the implementation effort.

Each one of them has their advantages and disadvantages. For more information, I suggest you the following ma terials:
- 3 strategic options to implement any ISO https://advisera.com/blog/2016/04/11/3-strategic-options-to-implement-any-iso-standard/
- Implementing ISO 27001 with a consultant vs. DIY approach https://info.advisera.com/27001academy/free-download/implementing-iso-27001-with-a-consultant-vs-diy-approach

These materials will also help you regarding ISO 27001 implementation:
- Book Secure & Simple: A Small-Business Guide to Implementing ISO 27001 On Your Own https://advisera.com/books/secure-and-simple-a-small-business-guide-to-implementing-iso-27001-on-your-own/
- Free online training ISO 27001 Foundations Course https://advisera.com/training/iso-27001-foundations-course/
- Diagram of ISO 27001:2013 Implementation https://info.advisera.com/27001academy/free-download/diagram-of-iso-27001-implementation-process
- ISO 27001 Documentation Toolkit https://advisera.com/27001academy/iso-27001-documentation-toolkit/

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Jul 04, 2019

Jul 04, 2019

Suggested Topics