CHAPTER 1: PROJECT MANDATE

It may be something of a cliché, but for information security management system (ISMS) projects, it is certainly true to say that well begun is half-way done. The person charged with leading an ISO/IEC 27001:2013 ISMS project has to reduce something that looks potentially complex, difficult, and expensive in terms of time and resources, to something that everyone believes can be achieved in the timeframe allocated and with the resources allowed. And then you have to make sure it is actually delivered!

What this actually means is the ISMS project leader has to set up the project in such a way that it is adequately resourced, there is enough time (including for everything that may go wrong), and everyone understands the ...

Get Nine Steps to Success: North American edition - An ISO 27001 Implementation Overview now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.