SPRING DISCOUNT
Get 30% off on toolkits, course exams, and Conformio yearly plans.
Limited-time offer – ends April 25, 2024
Use promo code:
SPRING30

Expert Advice Community

Guest

Performing risk assessment for both ISO 27001 and ISO 22301

  Quote
Guest
Guest user Created:   Jan 12, 2016 Last commented:   Jan 12, 2016

Performing risk assessment for both ISO 27001 and ISO 22301

How I can perform risk assessment for ISO27001 and ISO22301? Should I perform this separately?
0 0

Assign topic to the user

ISO 27001 RISK ASSESSMENT AND RISK TREATMENT METHODOLOGY

Define main rules for risk assessment and treatment.

ISO 27001 RISK ASSESSMENT AND RISK TREATMENT METHODOLOGY

Define main rules for risk assessment and treatment.

Guest
DejanK Jan 12, 2016

You shouldn't perform them separately - risk assessment performed according to ISO 27001 is perfectly acceptable for ISO 22301 also. See also this article: Can ISO 27001 risk assessment be used for ISO 22301? https://advisera.com/27001academy/blog/2013/03/11/can-iso-27001-risk-assessment-be-used-for-iso-22301/

You should just follow your Risk assessment methodology for ISO 27001, and since it must take into account risks related to availability, if you comply with such methodology you will perform one risk assessment for both standards.

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Jan 12, 2016

Jan 12, 2016

Suggested Topics

Guest user Created:   Feb 16, 2022 ISO 27001 & 22301
Replies: 1
0 0

Conformio