Expert Advice Community

Guest

ISO 27001 record types

  Quote
Guest
Guest user Created:   Feb 25, 2016 Last commented:   Feb 25, 2016

ISO 27001 record types

When you refer to records in ISMS is it for security related records only or all types of records. Also do you consider checklists as records?
0 0

Assign topic to the user

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

Expert
Dejan Kosutic Feb 25, 2016

Answer:

ISO 27001 defines that "documented information" relates to all documents and records that are necessary for the information security management system (ISMS). Therefore, yes - you could say that when "records" are mentioned in ISMS documentation, they refer to security-related records.

However, these records will include backup logs, access control logs, corrective actions, reports, and large amount of other records that help you manage your security. See also this article: Records management in ISO 27001 and ISO 22301 https://advisera.com/27001academy/blog/2014/11/24/records-management-in-iso-27001-and-iso-22301/

If you have a checklist that you fill out by checking the items you have completed, than this would also be a record.

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Feb 25, 2016

Feb 25, 2016