SPRING DISCOUNT
Get 30% off on toolkits, course exams, and Conformio yearly plans.
Limited-time offer – ends April 25, 2024
Use promo code:
SPRING30

Expert Advice Community

Guest

ISO 27001 vs ISO 27002

  Quote
Guest
Guest user Created:   Sep 08, 2018 Last commented:   Sep 08, 2018

ISO 27001 vs ISO 27002

If you resew implement ISO 27002 within the entity, do I need to have the ISO 27001?
0 0

Assign topic to the user

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

Guest
Antonio Jose Segovia Sep 08, 2018

Answer: If you want to implement only the ISO 27002, which is a code of best practices about information security, you don’t need the ISO 27001. But remember that you cannot certify ISO 27002, only ISO 27001 is certifiable, because this standard - I mean, ISO 27001- defines an Information Security Management System.

The core of ISO 27001 is the risk management, and basically you will need to identify and treat risks, and for the treatment, you can use the ISO 27002, because it gives you specific information about how to implement security controls. So, the logic is to implement ISO 27001, using the code of best practices of ISO 27002 to know how to implement security controls for the treatment of risks identified.

For more information about ISO 27001 and ISO 27002, please see this article “Diferencias y similitudes entre ISO 27001 e ISO 27002” : https://advisera.com/27001academy/es/knowledgebase/diferencias-y-similitudes-entre-iso-27001-e-iso-27002/

And also this one “The basic logic of ISO 27001: How does information security work?” : https://advisera.com/27001academy/knowledgebase/the-basic-logic-of-iso-27001-how-does-information-security-work/

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Sep 08, 2018

Sep 08, 2018

Suggested Topics

Guest user Created:   Aug 18, 2021 ISO 27001 & 22301
Replies: 1
0 0

ISO 27001 vs ISO 27002

Guest user Created:   Dec 18, 2019 ISO 27001 & 22301
Replies: 1
0 0

ISO 27001 and ISO 27799

Guest user Created:   May 07, 2019 ISO 27001 & 22301
Replies: 1
0 0

ISO 27002