August 2024
Intermediate to advanced
123 pages
2h 15m
English
The first concrete steps in initiating the ISMS are to determine which continual improvement methodology to use and to put a document structure in place.
ISO 27001 recognises that a ‘process approach’ is the most effective method for managing information security. The Standard is open to the deployment of any continual improvement approach and allows for organisations that already use, for instance, the ITIL Continual Service Improvement approach, the COBIT life cycle or any other method that is appropriate in the organisation’s context. One of the most widely known approaches in the management system world is the ‘Plan–Do–Check–Act’ (PDCA) model, which will be familiar to quality and business ...
Read now
Unlock full access