CHAPTER 9: AUDIT
The final stage of your ISO 27001 implementation project is to seek certification from a properly accredited body. The certification process can take some time, and you want to be sure that there are no major errors in your ISMS before you begin, otherwise you might fail the certification audit.
It’s therefore a good idea to conduct a pre-certification audit before the real thing. The audit will identify areas for improvement, thus contributing to the overall performance of the client’s ISMS. A key element will be interviewing auditees and helping them understand how to interact with a certification auditor if required.
Once you have completed that process and are satisfied with the status of your ISMS, it’s time to select a ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access