Discover millions of ebooks, audiobooks, and so much more with a free trial

Only $11.99/month after trial. Cancel anytime.

ISO 27001 A Complete Guide - 2020 Edition
ISO 27001 A Complete Guide - 2020 Edition
ISO 27001 A Complete Guide - 2020 Edition
Ebook229 pages2 hours

ISO 27001 A Complete Guide - 2020 Edition

Rating: 0 out of 5 stars

()

Read preview

About this ebook

Who needs budgets? Are business critical applications reviewed and tested after changes to operating system platforms and are there restrictions to changes to software packages? Do you have a documented procedure for the use of cryptography in your environment? Has it been determined what needs to be monitored and measured, when, by whom, the methods to be used, and when the results will be evaluated? Are the staff undertaking ISMS roles competent, and is this competence documented appropriately?

Defining, designing, creating, and implementing a process to solve a challenge or meet an objective is the most valuable role… In EVERY group, company, organization and department.

Unless you are talking a one-time, single-use project, there should be a process. Whether that process is managed and implemented by humans, AI, or a combination of the two, it needs to be designed by someone with a complex enough perspective to ask the right questions. Someone capable of asking the right questions and step back and say, 'What are we really trying to accomplish here? And is there a different way to look at it?'

This Self-Assessment empowers people to do just that - whether their title is entrepreneur, manager, consultant, (Vice-)President, CxO etc... - they are the people who rule the future. They are the person who asks the right questions to make ISO 27001 investments work better.

This ISO 27001 All-Inclusive Self-Assessment enables You to be that person.

All the tools you need to an in-depth ISO 27001 Self-Assessment. Featuring 991 new and updated case-based questions, organized into seven core areas of process design, this Self-Assessment will help you identify areas in which ISO 27001 improvements can be made.

In using the questions you will be better able to:

- diagnose ISO 27001 projects, initiatives, organizations, businesses and processes using accepted diagnostic standards and practices

- implement evidence-based best practice strategies aligned with overall goals

- integrate recent advances in ISO 27001 and process design strategies into practice according to best practice guidelines

Using a Self-Assessment tool known as the ISO 27001 Scorecard, you will develop a clear picture of which ISO 27001 areas need attention.

Your purchase includes access details to the ISO 27001 self-assessment dashboard download which gives you your dynamically prioritized projects-ready tool and shows your organization exactly what to do next. You will receive the following contents with New and Updated specific criteria:

- The latest quick edition of the book in PDF

- The latest complete edition of the book in PDF, which criteria correspond to the criteria in...

- The Self-Assessment Excel Dashboard

- Example pre-filled Self-Assessment Excel Dashboard to get familiar with results generation

- In-depth and specific ISO 27001 Checklists

- Project management checklists and templates to assist with implementation

INCLUDES LIFETIME SELF ASSESSMENT UPDATES

Every self assessment comes with Lifetime Updates and Lifetime Free Updated Books. Lifetime Updates is an industry-first feature which allows you to receive verified self assessment updates, ensuring you always have the most accurate information at your fingertips.

LanguageEnglish
Publisher5STARCooks
Release dateSep 5, 2019
ISBN9780655963530
ISO 27001 A Complete Guide - 2020 Edition

Read more from Gerardus Blokdyk

Related to ISO 27001 A Complete Guide - 2020 Edition

Related ebooks

Business For You

View More

Related articles

Reviews for ISO 27001 A Complete Guide - 2020 Edition

Rating: 0 out of 5 stars
0 ratings

0 ratings0 reviews

What did you think?

Tap to rate

Review must be at least 10 words

    Book preview

    ISO 27001 A Complete Guide - 2020 Edition - Gerardus Blokdyk

    ISO 27001

    Complete Self-Assessment Guide

    The guidance in this Self-Assessment is based on ISO 27001 best practices and standards in business process architecture, design and quality management. The guidance is also based on the professional judgment of the individual collaborators listed in the Acknowledgments.

    Notice of rights

    You are licensed to use the Self-Assessment contents in your presentations and materials for internal use and customers without asking us - we are here to help.

    All rights reserved for the book itself: this book may not be reproduced or transmitted in any form by any means, electronic, mechanical, photocopying, recording, or otherwise, without the prior written permission of the publisher.

    The information in this book is distributed on an As Is basis without warranty. While every precaution has been taken in the preparation of he book, neither the author nor the publisher shall have any liability to any person or entity with respect to any loss or damage caused or alleged to be caused directly or indirectly by the instructions contained in this book or by the products described in it.

    Trademarks

    Many of the designations used by manufacturers and sellers to distinguish their products are claimed as trademarks. Where those designations appear in this book, and the publisher was aware of a trademark claim, the designations appear as requested by the owner of the trademark. All other product names and services identified throughout this book are used in editorial fashion only and for the benefit of such companies with no intention of infringement of the trademark. No such use, or the use of any trade name, is intended to convey endorsement or other affiliation with this book.

    Copyright © by The Art of Service

    http://theartofservice.com

    service@theartofservice.com

    About The Art of Service

    The Art of Service, Business Process Architects since 2000, is dedicated to helping stakeholders achieve excellence.

    Defining, designing, creating, and implementing a process to solve a stakeholders challenge or meet an objective is the most valuable role… In EVERY group, company, organization and department.

    Unless you’re talking a one-time, single-use project, there should be a process. Whether that process is managed and implemented by humans, AI, or a combination of the two, it needs to be designed by someone with a complex enough perspective to ask the right questions.

    Someone capable of asking the right questions and step back and say, ‘What are we really trying to accomplish here? And is there a different way to look at it?’

    With The Art of Service’s Standard Requirements Self-Assessments, we empower people who can do just that — whether their title is marketer, entrepreneur, manager, salesperson, consultant, Business Process Manager, executive assistant, IT Manager, CIO etc... —they are the people who rule the future. They are people who watch the process as it happens, and ask the right questions to make the process work better.

    Contact us when you need any support with this Self-Assessment and any help with templates, blue-prints and examples of standard documents you might need:

    http://theartofservice.com

    service@theartofservice.com

    Included Resources - how to access

    Included with your purchase of the book is the ISO 27001 Self-Assessment Spreadsheet Dashboard which contains all questions and Self-Assessment areas and auto-generates insights, graphs, and project RACI planning - all with examples to get you started right away.

    How? Simply send an email to

    access@theartofservice.com

    with this books’ title in the subject to get the ISO 27001 Self Assessment Tool right away.

    You will receive the following contents with New and Updated specific criteria:

    •The latest quick edition of the book in PDF

    •The latest complete edition of the book in PDF, which criteria correspond to the criteria in...

    •The Self-Assessment Excel Dashboard, and...

    •Example pre-filled Self-Assessment Excel Dashboard to get familiar with results generation

    •In-depth specific Checklists covering the topic

    •Project management checklists and templates to assist with implementation

    INCLUDES LIFETIME SELF ASSESSMENT UPDATES

    Every self assessment comes with Lifetime Updates and Lifetime Free Updated Books. Lifetime Updates is an industry-first feature which allows you to receive verified self assessment updates, ensuring you always have the most accurate information at your fingertips.

    Get it now- you will be glad you did - do it now, before you forget.

    Send an email to access@theartofservice.com with this books’ title in the subject to get the ISO 27001 Self Assessment Tool right away.

    Purpose of this Self-Assessment

    This Self-Assessment has been developed to improve understanding of the requirements and elements of ISO 27001, based on best practices and standards in business process architecture, design and quality management.

    It is designed to allow for a rapid Self-Assessment to determine how closely existing management practices and procedures correspond to the elements of the Self-Assessment.

    The criteria of requirements and elements of ISO 27001 have been rephrased in the format of a Self-Assessment questionnaire, with a seven-criterion scoring system, as explained in this document.

    In this format, even with limited background knowledge of ISO 27001, a manager can quickly review existing operations to determine how they measure up to the standards. This in turn can serve as the starting point of a ‘gap analysis’ to identify management tools or system elements that might usefully be implemented in the organization to help improve overall performance.

    How to use the Self-Assessment

    On the following pages are a series of questions to identify to what extent your ISO 27001 initiative is complete in comparison to the requirements set in standards.

    To facilitate answering the questions, there is a space in front of each question to enter a score on a scale of ‘1’ to ‘5’.

    1 Strongly Disagree

    2 Disagree

    3 Neutral

    4 Agree

    5 Strongly Agree

    Read the question and rate it with the following in front of mind:

    ‘In my belief,

    the answer to this question is clearly defined’.

    There are two ways in which you can choose to interpret this statement;

    1.how aware are you that the answer to the question is clearly defined

    2.for more in-depth analysis you can choose to gather evidence and confirm the answer to the question. This obviously will take more time, most Self-Assessment users opt for the first way to interpret the question and dig deeper later on based on the outcome of the overall Self-Assessment.

    A score of ‘1’ would mean that the answer is not clear at all, where a ‘5’ would mean the answer is crystal clear and defined. Leave emtpy when the question is not applicable or you don’t want to answer it, you can skip it without affecting your score. Write your score in the space provided.

    After you have responded to all the appropriate statements in each section, compute your average score for that section, using the formula provided, and round to the nearest tenth. Then transfer to the corresponding spoke in the ISO 27001 Scorecard on the second next page of the Self-Assessment.

    Your completed ISO 27001 Scorecard will give you a clear presentation of which ISO 27001 areas need attention.

    ISO 27001

    Scorecard Example

    Example of how the finalized Scorecard can look like:

    ISO 27001

    Scorecard

    Your Scores:

    BEGINNING OF THE

    SELF-ASSESSMENT:

    Table of Contents

    About The Art of Service7

    Included Resources - how to access7

    Purpose of this Self-Assessment9

    How to use the Self-Assessment10

    ISO 27001

    Scorecard Example12

    ISO 27001

    Scorecard13

    BEGINNING OF THE

    SELF-ASSESSMENT:14

    CRITERION #1: RECOGNIZE15

    CRITERION #2: DEFINE:25

    CRITERION #3: MEASURE:40

    CRITERION #4: ANALYZE:48

    CRITERION #5: IMPROVE:65

    CRITERION #6: CONTROL:84

    CRITERION #7: SUSTAIN:103

    ISO 27001 and Managing Projects, Criteria for Project Managers:144

    1.0 Initiating Process Group: ISO 27001145

    1.1 Project Charter: ISO 27001147

    1.2 Stakeholder Register: ISO 27001149

    1.3 Stakeholder Analysis Matrix: ISO 27001150

    2.0 Planning Process Group: ISO 27001152

    2.1 Project Management Plan: ISO 27001154

    2.2 Scope Management Plan: ISO 27001156

    2.3 Requirements Management Plan: ISO 27001158

    2.4 Requirements Documentation: ISO 27001160

    2.5 Requirements Traceability Matrix: ISO 27001162

    2.6 Project Scope Statement: ISO 27001164

    2.7 Assumption and Constraint Log: ISO 27001166

    2.8 Work Breakdown Structure: ISO 27001168

    2.9 WBS Dictionary: ISO 27001170

    2.10 Schedule Management Plan: ISO 27001172

    2.11 Activity List: ISO 27001174

    2.12 Activity Attributes: ISO 27001176

    2.13 Milestone List: ISO 27001178

    2.14 Network Diagram: ISO 27001180

    2.15 Activity Resource Requirements: ISO 27001182

    2.16 Resource Breakdown Structure: ISO 27001184

    2.17 Activity Duration Estimates: ISO 27001186

    2.18 Duration Estimating Worksheet: ISO 27001188

    2.19 Project Schedule: ISO 27001190

    2.20 Cost Management Plan: ISO 27001192

    2.21 Activity Cost Estimates: ISO 27001194

    2.22 Cost Estimating Worksheet: ISO 27001196

    2.23 Cost Baseline: ISO 27001198

    2.24 Quality Management Plan: ISO 27001200

    2.25 Quality Metrics: ISO 27001202

    2.26 Process Improvement Plan: ISO 27001204

    2.27 Responsibility Assignment Matrix: ISO 27001206

    2.28 Roles and Responsibilities: ISO 27001208

    2.29 Human Resource Management Plan: ISO 27001210

    2.30 Communications Management Plan: ISO 27001212

    2.31 Risk Management Plan: ISO 27001214

    2.32 Risk Register: ISO 27001216

    2.33 Probability and Impact Assessment: ISO 27001218

    2.34 Probability and Impact Matrix: ISO 27001220

    2.35 Risk Data Sheet: ISO 27001222

    2.36 Procurement Management Plan: ISO 27001224

    2.37 Source Selection Criteria: ISO 27001226

    2.38 Stakeholder Management Plan: ISO 27001228

    2.39 Change Management Plan: ISO 27001230

    3.0 Executing Process Group: ISO 27001232

    3.1 Team Member Status Report: ISO 27001234

    3.2 Change Request: ISO 27001236

    3.3 Change Log: ISO 27001238

    3.4 Decision Log: ISO 27001240

    3.5 Quality Audit: ISO 27001242

    3.6 Team Directory: ISO 27001245

    3.7 Team Operating Agreement: ISO 27001247

    3.8 Team Performance Assessment: ISO 27001249

    3.9 Team Member Performance Assessment: ISO 27001251

    3.10 Issue Log: ISO 27001253

    4.0

    Enjoying the preview?
    Page 1 of 1