Expert Advice Community

Guest

Templates content

  Quote
Guest
Guest user Created:   Mar 17, 2017 Last commented:   Mar 17, 2017

Templates content

I would like to ask what is described in Documents? What should be done or also how it should be done? For example: Access Control Policy - is it proposed and described (technical way) how to implement the policy? Or Bring Your Own Device (BYOD) Policy - is it proposed what kind of technology to use? Disposal and Destruction Policy - how to implement?
0 0

Assign topic to the user

ISO 22301 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

ISO 22301 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

Expert
Rhand Leal Mar 17, 2017

I have already downloaded DEMO before, and the question is on the basis of the demo. I do not want to buy a package that is only extension of ISO 27002 without technical suggestions and parameters. Is it possible to present me an example (one sentence) from Access control policy, 3.7 Technical implementation or any other? I hope you understand my doubts.

Answer: By your description, I'm assuming you downloaded our free toolkit demo, and on this one only parts of the each document are available. To see the whole document you should go to the single document web page of the document you want to see. In the case of the Access control policy the link is https://advisera.com/27001academy/docume ntation/access-control-policy/

To find the Free demo you only have to scroll down the scree a little to find the Free demo tab.

In terms of content, our templates describe what should be done and by whom (in terms of job titles).

In terms of how things should be done, the templates point where this information should be included, and in a few cases there are comments with suggestions. Since each organization is unique in its needs it is unpractical to try to list or include technical content on all templates. In other words, all the technical details need to be filled out by the company since it differs from one company to another.

Regarding Access control policy, section 3.6 - technical implementation, examples I can give you may be:

The allocation/revocation of access rights is made by the following persons

- ERP system: System's Administrator
- Intranet network: Network's Administrator
- Printing service: Head of department xx
- Data center access: Head of IT department ,

If you still have any doubts about how our templates can help you, you can schedule a meeting with Aleksandar, our representative, at https://meetme.so/aleksandarbozovic , so he can provide more information to you.

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Mar 16, 2017

Mar 16, 2017

Suggested Topics

Guest user Created:   Nov 13, 2019 ISO 27001 & 22301
Replies: 1
0 0

Templates content

Guest user Created:   Oct 14, 2019 ISO 27001 & 22301
Replies: 1
0 0

Templates content