ISO 27001 new version and becoming a consultant
Assign topic to the user
1 - My company is intended to implement iso27001:2013, But I've heard that new version is coming, And I need to know if I start at the beginning of next year does the new version will affect me specially if I use your toolkits. Will it be updated.
Please note that ISO 27001:2013 was indeed in 2019, but it was confirmed as the current standard, so no changes will be required for those organizations already certified, or in process of certification of this version of the standard (the version of the current standard will still be 2013, not 2019). There is also no need to update our toolkits by this date.
For more information, please access this link: https://www.iso.org/standard/54534.html
2 - Next part is personally, after implementing the standard in my company , I would like to do my own business in iso 27 as consultant so Need your advice please.
To become an ISO 27001 consultant, the first step is for you to decide which path you want to follow considering security management or security assurance (i.e., security audit), and for these areas, you have the following ISO 27001 certifications you can follow:
- ISO 27001 Lead Implementer – this certification recognizes people who have competency in the ISO 27001 implementation process.
- ISO 27001 Lead Auditor – this certification recognizes people who have competency in auditing an ISM S against ISO 27001 requirements and want to become certification auditors (and with this provides more confidence to an organization for being certified).
These articles will provide you a further explanation about ISO 27001 personnel certifications:
- What does ISO 27001 Lead Implementer training look like? https://advisera.com/27001academy/blog/2016/11/28/what-does-iso-27001-lead-implementer-training-look-like/
- What does ISO 27001 Lead Auditor training look like? https://advisera.com/27001academy/blog/2016/08/29/what-does-iso-27001-lead-auditor-training-look-like/
- Lead Auditor Course vs. Lead Implementer Course – Which one to go for? https://advisera.com/27001academy/blog/2014/06/16/lead-auditor-course-vs-lead-implementer-course-which-one-to-go-for/
For courses related to these certifications, please see:
- ISO 27001:2013 Lead Auditor Course https://training.advisera.com/se/iso-14001-internal-auditor-course/o-27001-lead-auditor-course/
- ISO 27001:2013 Lead Implementer Course https://training.advisera.com/se/iso-14001-internal-auditor-course/o-27001-lead-implementer-course/
After certification, you should acquire experience in the field, and the most common ways are to work inside your current company implementing information security, or working for an established consultant.
For more information about how to become a consultant, please read:
- How to become an ISO 27001 / ISO 22301 consultant https://advisera.com/27001academy/blog/2014/07/21/how-to-become-an-iso-27001-iso-22301-consultant/
Comment as guest or Sign in
Nov 23, 2021