Search the web
Sign In
New User? Sign Up
iso-27001 · ISO 27001
? Already a member? Sign in to Yahoo!

Yahoo! Groups Tips

Did you know...
Message search is now enhanced, find messages faster. Take it for a spin.

Best of Y! Groups

   Check them out and nominate your group.
Having problems with message search? Fill out this form to ensure your group is one of the first to be migrated to the new message search system.

Messages

  Messages Help
Advanced
Messages 401 - 430 of 451   Oldest  |  < Older  |  Newer >  |  Newest
Messages: Simplify | Expand   (Group by Topic) Author Sort by Date ^
401
Hi ISACA has a download of the COBIT & ISO 27001 mapping. Maybe that will help you. Cheers, Dhananjaya Rao.N   ________________________________ From: Okunwa...
Dhananjaya Naronikar
djisms
Offline Send Email
Jun 2, 2009
6:48 am
402
Hi , there are a lot of documents on net showing Cobit and ISo 27001 mapping.   RD ... From: Okunwa Aduragbemi <adura4u2nv@...> Subject: [iso-27001]...
Siddi Rizwaan Damad
siddirizwaan
Offline Send Email
Jun 2, 2009
6:48 am
403
Does anyone know the potential pitfalls of applying ISO controls to processes? My organisation is mooting an expansion of our registration to all of our top 40...
nigelbeard98
Offline Send Email
Jun 3, 2009
6:49 pm
404
Considering the client follows ISO 17799:2005 ISMS, when does the client define "Management responsibility"? a. standards are defined b. assets are identified ...
RiCkY
deepal.madlani
Offline Send Email
Jul 16, 2009
7:35 am
405
Hi, 2 cents from me - Clause 5 (Mandatory clauses) clearly explains that the Management Responsibility has to be set up before the start of implementation and...
Dhananjaya Naronikar
djisms
Offline Send Email
Jul 17, 2009
9:20 am
406
Management responsibilities comes in cl 6.1.1 as management commitment. This is mandentory guidelines of ISO 17799:2005. It comes after policy documents are...
Bhavesh Pandey
bhavesh.pandey
Offline Send Email
Jul 18, 2009
8:31 am
407
I appreciate your response. I am clear about the Clause 5. however, which is the best answer to choose from the options provided was my query. Thanks, Deepal ...
RiCkY
deepal.madlani
Offline Send Email
Jul 18, 2009
8:31 am
408
Dear all, I have few questions on control A11.7.2 implementation.  1. What is the normal trend on allowing users to work from home? 2.  Should they be...
balasaheb ware
balaware
Offline Send Email
Jul 18, 2009
8:31 am
409
Duh? Why do you need to "define" management responsibility? ________________________________ From: RiCkY <madlaniricky@...> To: iso-27001@yahoogroups.com...
Eric Regalado
er_regalado
Offline Send Email
Jul 20, 2009
7:33 am
410
Dear All,   I need clarification on how to go about the implementation of the Statement of Applicability.   How do i know the yardstick for determining the...
Okunwa Aduragbemi
adura4u2nv
Offline Send Email
Jul 21, 2009
7:42 am
411
... Hallo Deepal, ISO 27002:2005 (formerly known as ISO 17799:2005) is not necesseraly implemented starting at chapter 1 and ending at chapter 15, in that...
hwkeijzer
Offline Send Email
Jul 21, 2009
7:42 am
412
Hi we are implementing ISMS and would like to know what will be the best way for risk management and assessment we worked on the FMEA procedure but I am not...
niru.live
Offline Send Email
Jul 21, 2009
7:42 am
413
hi is there any change in the SOA if the scope of ISMS is limited to IT department. please revert. niranjan...
niru.live
Offline Send Email
Jul 21, 2009
7:42 am
414
Eric, thats how the question was framed by the certification body :) ________________________________ From: Eric Regalado <er_regalado@...> To:...
RiCkY
deepal.madlani
Offline Send Email
Jul 21, 2009
7:43 am
415
Yes, there will be changes in the SOA. Note: It all depends on the scope defined initially. If you change the scope all documents related to ISMS will get...
Dharmendra
dharmu_r
Offline Send Email
Jul 21, 2009
4:40 pm
416
Hi, FMEA is best suitable for manufacturing companies. As you are trying to implement for IT department I suggest you to follow ISO 27005 for Risk Management. ...
Dharmendra
dharmu_r
Offline Send Email
Jul 21, 2009
4:40 pm
417
Dear Okunwa, You can draft SOA only after finishing your Risk Assessment phase. After your risk assessment you will clearly know what controls are applicable...
Dharmendra
dharmu_r
Offline Send Email
Jul 21, 2009
4:41 pm
418
Also, I recently joined the organisation, the ISMS implementation already started, the people who did the documentation and other activities are not trained or...
niru.live
Offline Send Email
Jul 22, 2009
7:51 am
419
Well I have no experience in the MSAT, I would like to have come inputs on using the same as it is questionaire based dont know which questions to use and how...
niru.live
Offline Send Email
Jul 22, 2009
7:52 am
420
You can draft SOA only after finishing your Risk Assessment phase. After your risk assessment you will clearly know what controls are applicable for you and...
Eric Regalado
er_regalado
Offline Send Email
Jul 22, 2009
7:52 am
421
I believe that doing SOA before the RIsk Assessment is not the right way of doing it as you will not know which control you are going to implement and which is...
Dharmendra
dharmu_r
Offline Send Email
Jul 23, 2009
6:54 am
422
Thanks to you both. I appreciate. My status is that I have virtually everything running in my organization before embarking on implementing the ISO27001....
Okunwa Aduragbemi
adura4u2nv
Offline Send Email
Jul 23, 2009
6:54 am
423
Your previous email said "ideal way" and the email before that says "the only way". Which is which? An organization can implement ISO 27001 controls even...
Eric Regalado
er_regalado
Offline Send Email
Jul 23, 2009
6:59 pm
424
Dear ISO-27001 Members,   Can anyone provide/share the Ideas/Tips on compliance checking, how one can ensure 100% compliance of ISO 27001 in an...
Suneel Panjwani
suneelnp
Offline Send Email
Jul 29, 2009
9:02 am
425
Dear Sunil, there is nothing called 100% compliance. There is always some level of improvement would be required after every audit. (Experienced auditors will...
Dharmendra
dharmu_r
Offline Send Email
Jul 29, 2009
7:47 pm
426
Dear All,   We are into data centre services, most of our hosted servers/other assets are owned by the people (clients) who sit out of their offices and not...
Jatin Sehgal
ncnsa7
Offline Send Email
Aug 9, 2009
7:46 am
427
 you mention the data hosting services as the scope of your ISO   In such cases all teh servers hosted are out of scope of ISO 27K , however those servers &...
sandeep walia
er_sandeep
Offline Send Email
Aug 10, 2009
6:12 pm
428
Hello Jatin Sehgal, About scope, yes you must include them. About considering hosted servers as asset, My oppinion is you may include in your assets, but of...
marioruicosta
Offline Send Email
Aug 10, 2009
6:12 pm
429
You can draw a line and limit the certification scope to the physical boundary and not include the client assets that you are made custodians of. But, you will...
Deejay N
djisms
Offline Send Email
Aug 11, 2009
9:19 am
430
Dear sir, I have some questions related to ISO 27001 , so plz, help me - Is ISO a tecnology or not ? - How can we make integration between Tecnology and...
ryounan76276
Offline Send Email
Oct 14, 2009
8:07 am
Messages 401 - 430 of 451   Oldest  |  < Older  |  Newer >  |  Newest
Advanced
Add to My Yahoo!      XML What's This?

Copyright © 2009 Yahoo! Inc. All rights reserved.
Privacy Policy - Terms of Service - Guidelines - Help