Search the web
Sign In
New User? Sign Up
iso-27001 · ISO 27001
? Already a member? Sign in to Yahoo!

Yahoo! Groups Tips

Did you know...
Real people. Real stories. See how Yahoo! Groups impacts members worldwide.

Best of Y! Groups

   Check them out and nominate your group.
Having problems with message search? Fill out this form to ensure your group is one of the first to be migrated to the new message search system.

Messages

  Messages Help
Advanced
Messages 158 - 187 of 451   Oldest  |  < Older  |  Newer >  |  Newest
Messages: Simplify | Expand   (Group by Topic) Author Sort by Date ^
158
Dear All, I am Rohan Kadam, an engineer by profession. Currently I am working with Financial BPO. I've comprehensive 5 years experience in Quality Management...
Rohan Kadam
kadamrohan
Offline Send Email
Dec 2, 2006
3:17 pm
159
Dear Rohan, ... It can't be denied. Any scope you choose, let's say a web server is accreditable. ... You can choose any method you want, you can even make up...
Vicente Aceituno
aceituno
Offline Send Email
Dec 3, 2006
8:52 am
160
Dear Rohan, Answers are given below the questions. Although, I feel an Implementation course would be the best option for you. Other members can correct me...
manish dave
manish_dave
Offline Send Email
Dec 4, 2006
8:45 am
161
Dear Rohan, Statement of applicability is the last stage of implementation. If compliance is new to your organization, i would suggest to start from defining...
Shabbir Syed
sha_asma
Offline Send Email
Dec 4, 2006
9:31 pm
162
Hi Rohan...I see that quite a few people have already replied to your queries. Just want to throw some more light on the basic issues you face, as I feel they...
fahim siddiqui
fahimdxb
Offline Send Email
Dec 5, 2006
7:47 am
163
In looking at the paperwork for this it becomes clear that this is very much oriented toward an officious process centered around the UK. Nominations and...
Fred Cohen
fcallnet
Offline Send Email
Dec 5, 2006
4:10 pm
164
I suspect they broke it up in parts to supply the vendor community with multiple "new" niche markets to pursue. ks C. Karen Stopford, CISSP AVP Information...
cstopfo@...
cstopfo
Offline Send Email
Dec 5, 2006
6:56 pm
165
Dear Rohan, I would agree with Manish that you need some kind of formal training if you are the Lead for the project. Better to be well informed in this case....
Dhananjaya Naronikar
djisms
Offline Send Email
Dec 6, 2006
6:53 pm
166
HI All, Please clarify me the following query regarding the "Documented procedure for measurement of effectiveness of controls " . Basically Im not sure what...
Sameer
samir_j_k
Offline Send Email
Dec 7, 2006
8:36 am
167
Dear Sameer, ... Measured effectiveness measures what results are you getting in comparison with an ideal (baseline) I have said this before. My opinion is...
Vicente Aceituno
aceituno
Offline Send Email
Dec 7, 2006
2:52 pm
168
Dear friends, I am back with my other query. Please guide me on drafting Telephone/ Fax Policy for my organization. Points to be considered are Making...
Rohan Kadam
kadamrohan
Offline Send Email
Dec 14, 2006
3:30 pm
169
Hi Gang, I am an IT project manager tasked with aligning our entrprise security with the ISO 27001:2005 and ISO 17799:2005 standards. We are not after ...
tomhayes54
Offline Send Email
Jan 28, 2007
6:24 pm
170
For anyone who hasn't seen it: THE ISO 27001 and ISO 17799 NEWSLETTER - EDITION 14 Welcome to the Issue 14 of the ISO27001/ISO17799 newsletter, designed to...
iso17799standard
iso17799stan...
Offline Send Email
Jan 28, 2007
6:26 pm
171
Dear Members, I am confused bit about BCP and DRP... can anyone help me that wats the big difference between these two Terms.. Waiting for your quick...
Suneel Panjwani
suneelnp
Offline Send Email
Apr 22, 2007
7:41 pm
172
My view: Business Continuity Planning - planning for continuity of the business - includes things like officer replacement as they retire, continuity of...
Fred Cohen
fcallnet
Offline Send Email
Apr 23, 2007
6:18 am
173
BCP is the safeguards that you put in place so that your business can continue uninterrupted when something bad happens. Example: UPS and generator for...
Javed Ikbal
javed_ikbal
Offline Send Email
Apr 23, 2007
6:18 am
174
A business continuity plan (BCP) is a management process to ensure the continuity of businesses. Not to be confused with continuity of operations (COOP) where...
Carter Schoenberg
carterschoen...
Offline Send Email
Apr 23, 2007
6:18 am
175
Dear Suneel, Business continuity planning is the process and procedures that an organisation can put in place to ensure that essential business functions ...
Jesus Alberto Suarez ...
jsuarez_m
Offline Send Email
Apr 23, 2007
6:19 am
176
Hi Suneel, Please go through the definitions that are self-explanatory. BUSINESS CONTINUITY PLANNING (BCP): An all encompassing, "umbrella" term covering both...
Dhananjaya Naronikar
djisms
Offline Send Email
Apr 23, 2007
6:19 am
177
Dears, i'm working with the iso 27001, and a few days ago, i received an certification external audit. The auditor requested me a high level of details in the...
fabianchiera
Offline Send Email
May 1, 2007
4:16 pm
178
... Yes it is. That's why ISO demands that you get things like policies approved by top management - and why they talk about the need for internal support for...
Fred Cohen
fcallnet
Offline Send Email
May 1, 2007
9:55 pm
179
Dear Fabian, I'm not sure if it is right answer what you are looking for. I thought that you should try with gap analysis using ISO 27001 comparing with being...
teerakrit
Offline Send Email
May 2, 2007
6:04 pm
180
Hi, If you are working on ISO 27001, then the standard scope is Information security (in all forms). It does not talk about identifying risk in new line of...
Bala Ramanan
balaramanan2000
Offline Send Email
May 3, 2007
6:58 am
181
Dear Fabin, Your RA shall assess the threat and vulnerabilities associated with the identified information, information processing & associated assets and...
Dinesh
dina_kd
Offline Send Email
May 4, 2007
7:26 am
182
Hi I would interpret the Auditors statement/requirement in a slightly different way. 1. All the busines function and the decisions they make in terms of...
Venu
venu_kailas
Offline Send Email
May 7, 2007
7:11 am
183
Dear All, I fully agree with Venu. I have seen many organisations where RA is done organisation wide and not at the process levels. Process owners should do ...
V Nagendra
vsnagi
Offline Send Email
May 7, 2007
9:16 pm
184
RA has to be done both at the org level & at the entitiy level within the organization. RA can be done by the process owners provided it is done in conjuction...
Raj
raj2610
Offline Send Email
May 8, 2007
2:46 pm
185
Dear All, I have been teaching a class on risk management recently and that got me thinking. I don't know if it happens to you, but I learn more when I teach...
Vicente Aceituno
aceituno
Offline Send Email
May 8, 2007
5:52 pm
186
Hi All, Vincente has really summed it up nicely. There is no single best way for RA. RA be done as per the Organisation's characteristics - SME, Large,...
Sarat Kurra
saisaratk
Offline Send Email
May 9, 2007
11:34 am
187
Hello, NIST - National institute of standards and technology has published "Risk Management Guide for Information Technology Systems". This is good RA...
Abhishek Maurya
abhi9211
Offline Send Email
May 9, 2007
3:09 pm
Messages 158 - 187 of 451   Oldest  |  < Older  |  Newer >  |  Newest
Advanced
Add to My Yahoo!      XML What's This?

Copyright © 2009 Yahoo! Inc. All rights reserved.
Privacy Policy - Terms of Service - Guidelines - Help