Expert Advice Community

Guest

Scope in the ISO 27001:2013

  Quote
Guest
Guest user Created:   Jan 12, 2016 Last commented:   Jan 12, 2016

Scope in the ISO 27001:2013

Does the scope statement needs to be updated? If not, will it be considered as a non-conformity
0 0

Assign topic to the user

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

Guest
AntonioS Jan 12, 2016

Not necessarily. The new revision of the standard, the ISO 27001:2013, has new requisites and your organization has to adapt to them (I suppose that still has the ISO 27001:2005), but it does not imply that you have to change the scope. Anyway, some certification bodies consider as a major non-conformity if your organization still has the old ISO 27001:2005. For more information about changes between old and new version of the standard, please read this article “How to make a transition from ISO 27001 2005 revision to 2013 revision” : https://advisera.com/27001academy/knowledgebase/how-to-make-a-transition-from-iso-27001-2005-revision-to-2013-revision/

Finally, this article also can be interesting for you "How to define the ISMS scope" : https://advisera.com/27001academy/knowledgebase/how-to-define-the-isms-scope/

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Jan 12, 2016

Jan 12, 2016