SPRING DISCOUNT
Get 30% off on toolkits, course exams, and Conformio yearly plans.
Limited-time offer – ends April 25, 2024
Use promo code:
SPRING30

Expert Advice Community

Guest

Needs and Expectations of Interested parties

  Quote
Guest
Guest user Created:   Jul 09, 2020 Last commented:   Jul 09, 2020

Needs and Expectations of Interested parties

Are needs and expectations same or different for one interest party? If different are the needs and expectations both the requirements for the interested party stated example client. Or in the case of the client the needs are what organization wants from the client and what expectations does the client have from the organization?

0 0

Assign topic to the user

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

Expert
Rhand Leal Jul 09, 2020

Although the ISO 27001:2013 standard does not define the terms ‘needs’ and ‘expectations’ when it talks about the needs and expectations of interested parties, it is helpful to think of them in this way. Needs are those things that interested parties have clearly stated or written down, such as a law that you need to meet (e.g., GDPR), or an information security requirement in a contract. Expectations are the unwritten things that the interested parties reasonably assume you will do, such as accurate tracking of information to meet those laws or timely addressing information security incidents when they occur.

You can learn more about the requirement in this article: 

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Jul 09, 2020

Jul 09, 2020

Suggested Topics

Guest user Created:   Jun 02, 2022 ISO 27001 & 22301
Replies: 1
0 0

Framework question

Guest user Created:   Aug 14, 2020 ISO 27001 & 22301
Replies: 1
0 0

Defining the Scope