HOME   I   PROFILE   I   CE MARKING   I   HACCP   I   OHSAS   I   TRAINING   I   CLIENTS   I   FEEDBACK   I   CONTACT

ISO CONSULTANTS      ISO 9000/14000      CE MARKING                                

ISO 27001 :2005

This International Standard has been prepared to provide a model for establishing, implementing, operating, monitoring, reviewing, maintaining and improving an information Security Management system (ISMS) .The adoption of an ISMS should be a strategic decision for an organization. The design & implementation of an organization’s ISMS is influenced by their needs & objectives, security requirements, the processes employed and the size and structure of the organization. These and their supporting systems are expected to change over time. It is expected that an ISMS implementation will be scaled in accordance with the needs of the organization e.g. a simple situation requires a simple ISMS solution.

This International standard can be used in order to assess conformance by interested internal and external parties.

This International Standard adopts a process approach for establishing, implementing, operating, monitoring, reviewing, maintaining and improving an organization’s ISMS.

An organization needs to identify and manage many activities in order to function effectively. Any activity using resources and managed on order to enable the transformation of inputs into outputs can be considered to be a process. Often the output from one process directly forms the input to the next process.

The process approach for information security management presented in this International Standard encourages its users to emphasize the importance of :

 

a)

Understanding an organization’s information security requirements and the need to establish policy objectives for information security.

 

b)

Implementing & operating controls to manage an organization’s information security risks in the context of the organization’s overall business risks.

 

c)

Monitoring & reviewing the performance and effectiveness of ISMS &

 

d)

Continual Improvement based on objective measurement.

This International Standard adopts the “ Plan-Do-Check-Act” ( PDCA) model ,which is applied to structure all ISMS PROCESSES.

 

PROFILE  I  ISO 9000/14000   ISO 13485:2003(E)   ISO 27001 :2005     ISO 22000   CE MARKING  I  HACCP  I  OHSAS  TRAINING  I  CLIENTS  I  FEEDBACK  I  CONTACT


Created & hosted by Softweb Technology