I have another quick question. Should I define any partnerships under clause 4.1 and/or 4.3? Or should they be incorporated only into the subcontractor policy and procedures?
Answer:
Sure, you can define your partnerships under the context of your ISMS, and you can also consider a partnerships like a interested party (clause 4.2 Understanding the needs and expectations of interested parties), so this article can be interesting for you How to identify interested parties according to ISO 27001 and ISO 22301 : https://advisera.com/27001academy/knowledgebase/how-to-identify-interested-parties-according-to-iso-27001-and-iso-22301//
Comment as guest or Sign in
Jan 12, 2016
Jan 12, 2016
Jan 12, 2016