ISO 27001 implementation
Hope you are well.
I have bought the documentation toolkit with extended support.
1 - Frankly, I'm not quite sure to whom should I send my queries via email.
I have received detailed email explaining these things at the time of purchase, but I can't find it now.
2 - I'm planning to implement the ISO 22301 for our bank, which is a leading bank with more than 30 branches, and for now we are planning to certify only IT department operations.
my question is, do we need to include the branches in our scope or it's just our HQ office and our DR Site?
In each branch, we have some switches, firewalls that is used to connect to our centralized systems. All the equipment in the branches are managed centrally from the head office.
Assign topic to the user
I have bought the documentation toolkit with extended support.
1 - Frankly, I'm not quite sure to whom should I send my queries via email.
I have received detailed email explaining these things at the time of purchase, but I can't find it now.
You can post your questions on our community at this site: https://community.advisera.com/
In case you want to make a more sensitive question, you can send it to our support contact: support@advisera.com
2 - I'm planning to implement the ISO 22301 for our bank, which is a leading bank with more than 30 branches, and for now we are planning to certify only IT department operations.
my question is, do we need to include the branches in our scope or it's just our HQ office and our DR Site?
In each branch, we have some switches, firewalls that is used to connect to our centralized systems. All the equipment in the branches are managed centrally from the head office.
You can define your ISO 22301 scope only as your HQ office and DR Site. You can treat your branches as external locations that your scope interacts with.
These articles will provide you a further explanation about scope definition (it is focused on ISO 27001, but the concepts also apply to ISO 22301):
- How to define the ISMS scope https://advisera.com/27001academy/knowledgebase/how-to-define-the-isms-scope/
- Problems with defining the scope in ISO 27001 https://advisera.com/27001academy/blog/2010/06/29/problems-with-defining-the-scope-in-iso-27001/
Comment as guest or Sign in
Oct 28, 2020