![]() |
|
ISO 27001 certification
ISO 27001 is a management system tool to help clients better manage their information assets. Unprotected systems are vulnerable to computer-assisted fraud, sabotage and viruses. Breaches in information security can allow vital information to be accessed, stolen, corrupted or lost. How confident are you that you have appropriate controls and procedures in place to avoid such incidents?
The internationally recognised information security management system (ISMS) standard, ISO 27001 formerly known as BS 7799 is based on the ‘plan – do – check – act’ model in common with ISO 9001 and ISO 14001. It uses risk assessment and business impact analysis to identify and manage risk to ensure the confidentiality, integrity and availability of information.
Increasingly your clients and prospective clients will want to know how safe your IT systems are. More organisations now see certification to ISO 27001 as a prerequisite for doing business.
How can ISO 27001 benefit my organisation?
Compliance to this information security standard provides a process whereby existing and potential legislation is identified. ISO 27001 has been recommended by the UK Data Protection Commissioner as one way in which organisations can demonstrate they meet the requirements of the Data Protection Act 1998.
Certification allows you to make a public statement of capability without revealing your security processes. Importantly, it will show stakeholders that you have the controls in place to reduce the risk of security threats. In turn, it will also help the organisation develop a business continuity plan that will minimise impact of any security breaches.
Our assessors are management systems experts with the experience and knowledge to give a thorough and objective audit of your ISMS. This will help give you increased confidence in your own security measures as judged against best industry practice.
Your next step
We offer training, gap analysis and certification to ISO 27001. We also offer free to download implementation articles giving advice to organisations considering developing a certified information security management system.
Further information:
- Guidance: How to implement an ISMS
- Our assessment process
- Purchase Standards (external link - clickhere for terms and conditions)
Home
:
Standards and Schemes
:
Asset Protection
:
ISO 27001 Information Security
23 February 2012



