Expert Advice Community

Guest

Project Planning - does the calculator results implementation time for all of th

  Quote
Guest
Guest post Created:   Jan 12, 2016 Last commented:   Jan 12, 2016

Project Planning - does the calculator results implementation time for all of th

e selected controls?The calcutor estimated that my project would take 26 months based on my organization. Does that estimate include implementation time for each control selected as part of the Risk Treatment Plan or is it just the time from project start to creation of the Risk Treatment Plan? This is my first ISO270001 project, but I have significant Information Security experience and if it is "just" the time required to identify assets, assess risk, and build the plan the control environment then 26 months seems very long (I would estimate 6-9 months only). Thanks.
0 0

Assign topic to the user

ISO 22301 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

ISO 22301 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

Guest
DejanK Jan 12, 2016

Our Implementation Duration calculator gives you an estimate of the implementation time of the whole project, including the controls.

I agree with you that asset identification and risk assessment goes rather quickly, but the implementation of controls (and their acceptance by all the employees and the top management) is something that takes a long time. Of course, you can do it in shorter time, but in such cases it is a big question whether all controls would really work if needed.

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Jan 12, 2016

Jan 12, 2016