SPRING DISCOUNT
Get 30% off on toolkits, course exams, and Conformio yearly plans.
Limited-time offer – ends April 25, 2024
Use promo code:
SPRING30

Expert Advice Community

Guest

Supplier policy and risk assessment & treatment

  Quote
Guest
Guest user Created:   Jan 12, 2016 Last commented:   Jan 12, 2016

Supplier policy and risk assessment & treatment

0 0

Assign topic to the user

ISO 27001 RISK ASSESSMENT AND RISK TREATMENT METHODOLOGY

Define main rules for risk assessment and treatment.

ISO 27001 RISK ASSESSMENT AND RISK TREATMENT METHODOLOGY

Define main rules for risk assessment and treatment.

Guest
AntonioS Jan 12, 2016

If you can help me about 
-          example about Supplier relationship policy based on ISO 27001.
-           Example methodology based on likelihood and impact criteria.  
 

Answer:

Sure, this is your site. Regarding to the supplier relationship, this article can be interesting for you “6-step process for handling supplier security according to ISO 27001” : https://advisera.com/27001academy/blog/2014/06/30/6-step-process-for-handling-supplier-security-according-to-iso-27001/. At the end of the article, you have a link to the template “Supplier Security Policy”, you can see a free version clicking on “Free Demo” tab.
Regarding to the methodology, I suppose that you are referring to the risk assessment & treatment. If so, this article can be interesting for you “How to write ISO 27001 risk assessment methodology” : https://advisera.com/27001academy/knowledgebase/write-iso-27001-risk-assessment-methodology/. And also, at the end of the article, you can find the free template “Risk Assessment and Risk Treatment Methodology”. This method ology is based on assets, and the risk is calculated by likelihood and consequences (similar to impact) of threats and vulnerabilities.

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Jan 12, 2016

Jan 12, 2016

Suggested Topics

Ash Created:   Jan 21, 2024 ISO 27001 & 22301
Replies: 1
0 0

ISO 27001 Internal Audits

Guest user Created:   Feb 01, 2022 ISO 27001 & 22301
Replies: 1
0 0

Annex A Controls in Conformio

Guest user Created:   Aug 20, 2021 ISO 27001 & 22301
Replies: 1
0 0

Risks treatment