CHAPTER 9: AUDIT

The final stage of your ISO 27001 implementation project is to seek certification from a properly accredited body. The certification process can take some time, and you want to be sure that there are no major errors in your ISMS before you begin, otherwise you might fail the certification audit.

It’s therefore a good idea to conduct a pre-certification audit before the real thing. The audit will identify areas for improvement, thus contributing to the overall performance of the client’s ISMS. A key element will be interviewing auditees and helping them understand how to interact with a certification auditor if required.

Once you have completed that process and are satisfied with the status of your ISMS, it’s time to select a ...

Get Nine Steps to Success - An ISO 27001:2022 Implementation Overview now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.