August 2024
Intermediate to advanced
123 pages
2h 15m
English
An effective ISMS is one that helps an organisation achieve its information security objectives. These objectives should be linked to its business, regulatory and contractual objectives and should be delegated to appropriate levels within the organisation.
ISO 27001 requires the organisation to “continually improve the suitability, adequacy and effectiveness” of the ISMS. Organisations can meet the Standard’s corrective action requirements by implementing an ISMS audit plan, competent review of nonconformities, incident response procedures and other related documentation.
The combination of effective monitoring, measuring and corrective action processes – together with a formal review process and a strong ...
Read now
Unlock full access