Thanks to you both. I appreciate. My status is that IÂ have virtually everything running in my organization before embarking on implementing the ISO27001....
Your previous email said "ideal way" and the email before that says "the only way". Which is which? An organization can implement ISO 27001 controls even...
Dear Sunil, there is nothing called 100% compliance. There is always some level of improvement would be required after every audit. (Experienced auditors will...
Dear All,  We are into data centre services, most of our hosted servers/other assets are owned by the people (clients) who sit out of their offices and not...
 you mention the data hosting services as the scope of your ISO  In such cases all teh servers hosted are out of scope of ISO 27K , however those servers &...
Hello Jatin Sehgal, About scope, yes you must include them. About considering hosted servers as asset, My oppinion is you may include in your assets, but of...
You can draw a line and limit the certification scope to the physical boundary and not include the client assets that you are made custodians of. But, you will...
Dear sir, I have some questions related to ISO 27001 , so plz, help me - Is ISO a tecnology or not ? - How can we make integration between Tecnology and...
Hi Rania, ISO stands for International Standardization Organization, which is the body that publishes the standards. ISO 27001 itself is a standard, not the...
Dear Rania, Q1: Ans : ISO 27001 is not technology, This is ISO Standard Q2: Ans: This is so simple to integrate your business with ISO 27001, first of all read...
Hello Rania, - Is ISO a technology or not ? Thank you for your bulls eye question. ISO 270001 is not a technology. ISO 27000x has to do with Mindset. It...
Hi All, Â I need clarification on the steps required to implent ISO27001 in my environment. Â I have completed the SOA for iso-27001 and need to get more...
Hi Rania ISO is not a technology, it is an association. ISO - International Organization for Standardization. ISo 27001 is the management system standard used...
Dear Rania, Well below are MY opinion and view about yoru queries Is ISO a tecnology or not ? Not purely, ISO is a standard which describes what measures are...
ISO 27001 is a global standard for Information Security Management System. You have to decide that how it is beneficial for your organization. ISO 27001...
Hi Rania, ... ISO is short of International Standards Organisation. The standard ISO 27001 defines requirements for information security management within a...
Dear All.. I've passed ISMS Auditor/ Lead Auditor Training Course, Course No A172077 certified by IRCA in Dec 2007, now i want to become an IRCA ISO...
Hello Team,    We are planning to enroll in ISO 27001 security professional implementation training, which would be the best?  STQC or BSI    ...
Dear members, I have been assigned a task to implement ISMS in a large size organisation and the scope of is make Information Security Division compliant with...
Hi, You cannot take the approach one-fits-all - you have to perform a risk assessment (clauses 4.2.1 d & e of ISO 27001 standard), and then in the risk...
My advice: do a risk assessment. ________________________________ From: Aun Motani <aunmotani@...> To: iso-27001@yahoogroups.com Sent: Sat, October 17,...
Hi Muthiah, Â Since the ISMS standard cannot change, the institute will not make much of a difference. I am sure there are many people in this forum who have...
Dear Aun, Â What is the basis for your organisation to select the Inforsec Department for ISO27001 certification? Certification should be done for the...
Check the Course contents.. Means what they are going to teach in 5 days.. and also the profile of the trainer and then you can talk to the trainer, inorder to...
I agree with dejan, Â And my experinec of working with big organsation ( having multiple locn & web presence) is that almost all controls as suggetsed in 27K...
Never been a big fan of these training courses. IMHO, it offers little value and is more than not a big waste on time and resources. The documentation in the...
I'd choose the cheapest course, but would look into the other participants' curriculums. The cooperation with the participants brought me the most value in the...