Expert Advice Community

Guest

Materials for large organizations

  Quote
Guest
Guest user Created:   Jun 09, 2018 Last commented:   Jun 09, 2018

Materials for large organizations

I’m working for a large organisation and I’m trying to put forward a business case to purchase more of your content. I noticed that your policies etc are more suited for small to medium enterprises – do you have any advice/tips on how I can modify these policies for use in a large organisation?
0 0

Assign topic to the user

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

Expert
Rhand Leal Jun 09, 2018

Answer: Large organizations often require more detailed policies and procedures, because they:
- face a wider range of risk scenarios
- have multiple sites that require different approaches to handle the same risks

Considering that, the point is to increase the level of details in each template and elaborating multiple documents. The problem with this approach is that a manual document control of such a great number of documents may become unfeasible, then you should also consider this when adapting our toolkit to a large organization.

It is also important to note that you may have to create some documents that do not exist in the toolkit (e. g., physical security), because they do not exist in the toolkit because they are not mandatory and smaller companies usually do not need them.

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Jun 09, 2018

Jun 09, 2018

Suggested Topics

Guest user Created:   Apr 06, 2023 ISO 27001 & 22301
Replies: 1
0 0

Scope of work