"Continuous improvement is the only cultural value that could unify an organization as large and diverse as ours.”
—Anonymous
This final chapter discusses continual improvement. Is continual improvement needed when you have implemented the ISO 27001 standard controls and have been audited/certified by an external certifying body? The fact is, your duty is not over once you are certified. Many organizations don’t focus on further improvements or stop adding to the scope areas that ...