Hi, While implementing ISo27001 standard for an organization, which law takes the precedence international law or the country law.For eg: in countries which...
Hi Rizwan I don't have the standard in front of me, and I don't remember exactly what it says on the issue of software licensing, but in my opinion, there are...
Which countries are saying there is no need to buy licensed software? Can you share laws from these countries saying it is ok to use unlicensed software? FYI,...
... Can't say anything to that topic, but would be interested in the laws, which says, you don't need to buy the stuff you're working with.. ;-) ... Yea..-No. ...
Andreas Rauer
Andreas.Rauer@...
Nov 13, 2008 8:02 pm
343
Agree with Eric....No-one is allowed to use pirated software by law...sanction or no sanction.If they use it,the it is not ethical. Shankar Kris 1 847 363 1675...
The purpose of legal compliance being part of the security requirements is to prevent legal risks affecting the business continuity. Under this principle, if...
Dear All,I have small doubt. Can we add this wording in the certification scope "....support functions including data protection act of UK 1998..." ??? My...
IMHO, If you are gunning for ISO27001 Certification, you need to show compliance only to that standard. While compliance to other standards/ Regulations is...
Hi Nagendra Hoz life? well As per my thinking, scope shall define the functions which are compliant to ISO 27001, and can't include the compliance with other...
... ISO 27001, 4.2.1 a) says: "Define the scope and boundaries of the ISMS in terms of the characteristics of the business, the organization, its location,...
Andreas Rauer
Andreas.Rauer@...
Nov 26, 2008 6:50 pm
350
Hi Nagendra Scope, to my understanding, is the coverage or the boundary where the ISMS is effective and where the Audit has to take place. You have A.15...
Dear All, Â I have a query regarding ISO 9001:2000 certification for my company. We are Bangalore based ISO 9001:2000 certified company for last 5 years and...
Dear Mr. Venkat Swami, Yes of course you can have your SA once in a year, with no changes in mandays of audits. Infact, if your certification body is common...
Hi Venkat You can very well change to yearly surveillance audit. There is no such requirements to have a half yearly audit. Some Certification Bodies have ...
Venkat, As other fellow-members of this group have written, request your Certification Body [CB] to change the audit schedule from half-yearly to yearly....
Hi, Is there any tool which would classify documents? I have defined the classification but since there are loads of documents, it is not possible to open each...
Hi Friends We are implementing ISMS in our BPO Company.. I would appreciate any thought or an ideas on cost effective BCP/DR Solutions for a Mid Size Business ...
Use other locations as your DR sites. Â In case you have only one location, then sign a MOU with a nearby hotel with wi-fi connection, so that delivery can be...
Dear Rajesh, Do not expect a specific answer based on the minute details you have provided. Look at your risks and requirements and align your BCP/DR...
Wow. Did you have insider information on what type of BPO Rajesh is working at? I know of a 10-man BPO (small size not even Mid) that does content conversion....
Rajesh, Your BCP/DR solution for "Deliverables" should be derived from kind of Service Level Agreements you have committed to your Client. Those should provide...
Hi The certification is for management system, it can be any management system( Production, testing or design and development anything). May be a call centre,...
... yes in fact or theory u can but if auditor asks that how you include new systems to whole system and if u say directly then u have to define your risks at...
Our consultant claims that the Auditor can do Phase 1 and Phase 2 audit in a one, 3 days trip, is this true? Is there any rule about Phase 1 and Phase 2 audits...
Yes it is possible. Stage 1 is checking your management system in "theory". Stage 2 is checking the application or implementation. If you pass Stage 1 or if...