Review ISMS document
I am reviewing the existing ISMS scope document, the last reviewed this document was October 2018. what I should review & analyze for this document. please let me know which area I have to review.
Assign topic to the user
You should review all ISMS scope content, considering the internal and external issues (e.g., internal culture, iplemented technologies, market trends, new technologies, etc.) that can affect the ISMS and its proposed objectives, as well as the defined requirements of the interested parties (e.g., contractual clauses, legislation, etc.).
A change in one of these aspects may require a change in the ISMS scope, either to add, exclude or change something in the current ISMS scope document.
These articles will provide you a further explanation about the scope definition:
- How to define the ISMS scope https://advisera.com/27001academy/knowledgebase/how-to-define-the-isms-scope/
- Problems with defining the scope in ISO 27001 https://advisera.com/27001academy/blog/2010/06/29/problems-with-defining-the-scope-in-iso-27001/
- How to define context of the organization according to ISO 27001 https://advisera.com/27001academy/knowledgebase/how-to-define-context-of-the-organization-according-to-iso-27001/
- How to identify ISMS requirements of interested parties in ISO 27001 https://advisera.com/27001academy/blog/2017/02/06/how-to-identify-isms-requirements-of-interested-parties-in-iso-27001/
These materials will also help you regarding scope definition:
- How to set the ISMS scope according to ISO 27001 [free webinar on demand] https://advisera.com/27001academy/webinar/how-to-set-the-isms-scope-according-to-iso-27001-free-webinar-on-demand/
- Free online training ISO 27001 Foundations Course https://advisera.com/training/iso-27001-foundations-course/
Comment as guest or Sign in
May 13, 2020