Organizing documentation
Assign topic to the user
Answer:
First thing to do is to identify which documents must be accessed by which persons or roles, so you can group them in a way that will minimize risks of unauthorized access.
Considering that, files and folders generally are organized in terms of departments or processes where they are used.
These articles will provide you further explanation about control of documents and records:
- Records management in ISO 27001 and ISO 22301 https://advisera.com/27001academy/blog/2014/11/24/records-management-in-iso-27001-and-iso-22301/
- Common mistakes with ISO 13485:2016 documentation control and how to avoid them https://advisera.com/13485academy/blog/2018/03/14/common-mistakes-with-iso-134852016-documentation-control-and-how-to-avoid-them/ (Although this article is about a different standard, these principles are still applicable to ISO 27001).
Comment as guest or Sign in
Nov 30, 2018