SPRING DISCOUNT
Get 30% off on toolkits, course exams, and books.
Limited-time offer – ends May 26, 2022
Use promo code:
SPRING30

Expert Advice Community

Guest

Process of ISO 27001 Audit

  Quote
Guest
Guest user Created:   Jan 25, 2022 Last commented:   Jan 25, 2022

Process of ISO 27001 Audit

What are the basic things that we need to prepare to successfully clear the audit and basically what documents.  
0 0

Assign topic to the user

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

Expert
Rhand Leal Jan 25, 2022

I’m assuming your question is about a certification audit.

Considering that, to successfully clear a certification audit you need to implement the Information Security Management System according to ISO 27001 requirements, which involves:

  1. getting management buy-in for the project;
  2. defining ISMS basic framework (e.g., scope, objectives, organizational structure), by understanding organizational and requirements of interested parties;
  3. development of risk assessment and treatment methodology;
  4. perform a risk assessment and define a risk treatment plan;
  5. controls implementation (e.g., policies and procedures documentation, acquisitions, etc.);
  6. people training and awareness;
  7. controls operation;
  8. performance monitoring and measurement;
  9. perform internal audit;
  10. perform management critical review; and
  11. address nonconformities, corrective actions, and opportunities for improvement.

This article will provide you a further explanation about ISMS implementation:

About required documents, please see this article:

To see how documents compliant with ISO 27001 looks like, please take a look at the free demo of our ISO 27001 Documentation Toolkit: https://advisera.com/27001academy/iso-27001-documentation-toolkit/

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Jan 25, 2022

Jan 25, 2022

Suggested Topics

Guest user Created:   Apr 06, 2022 ISO 27001 & 22301
Replies: 1
0 0

27001 question

Guest user Created:   Feb 13, 2022 ISO 27001 & 22301
Replies: 1
0 0

Quantity of risks

Guest user Created:   Sep 24, 2021 ISO 27001 & 22301
Replies: 1
0 0

Documentation of requirements