SlideShare uma empresa Scribd logo
1 de 13
Baixar para ler offline
( Information Security Management System )
 An Information Security Management System
(ISMS) is a systematic approach to managing
sensitive company information so that it
remains secure. It encompasses people,
processes and IT systems.
ISO stands for International Organization for
Standardization
ISO/IEC 27001:2013 is the latest International
Standard an organization must be measured
against to implement a successful ISMS.
It helps identify, manage and minimize the
range of threats to which information is
regularly subjected.
Demonstrates company’s commitment in
protecting information
Improved customer, employee and partner
confidence
Improved information security throughout
the organization
Improved security planning
Security management effectiveness
Ongoing protection over Information
Reduced risk over information
 The objective of having an organizational information
security framework is to help achieve an effective and
efficient way of managing Information security within
the organization. A management framework shall be
established to manage and control activities related to
information security within the organization.
 Security Management forum consisting of leadership
team shall be established to approve the information
security policy, assign security roles and co-ordinate
the implementation of security across the
organization.
 Information security advisory forum shall be established and
made available within the organization. Contacts with external
security specialists shall be developed to keep up with industrial
trends, monitor standards and assessment methods. This would
help to apply the latest countermeasures while dealing with
security incidents.
 A multi-disciplinary approach to information security should be
encouraged, e.g. involving the co-operation and collaboration of
managers, users, administrators, application designers, auditors
and security staff, and specialist skills in areas such as Legal,
Business Continuity Planning, insurance and risk management.
 There is a need to define the roles and responsibilities of the
individual functions so as to cover the entire the spectrum of the
Information Security. This would help establish accountability
and streamlining the operations.
TABLE OF CONTENTS
 DOCUMENT HISTORY AND RETENTION
 DOCUMENTATION APPROVAL
 DISTRIBUTION LIST
 TABLE OF CONTENTS
 1.INTRODUCTION
 2. LINE OF BUSINESS
 3.ORGANIZATION STRUCTURE
 3.1 DEVELOPMENT
 3.2 INTEGRATION
 3.3 PROJECT MANAGEMENT
 3.4 PRODUCT MANAGEMENT
 3.5 RELEASE & CONFIGURATION MANAGEMENT
 3.6 CUSTOMER HELP DESK AND TECHNICAL SUPPORT
 3.7 SETUP& IMPLEMENTATION
 3.8 SALES AND ACCOUNT MANAGEMENT
 3.9 PR & MARKETING
 3.10 INFORMATION TECHNOLOGY
 3.11 HUMAN RESOURCE
 3.12 ADMIN
 3.13 FINANCE
 4.1 UNDERSTANDING THE ORGANISATION AND ITS CONTEXT –CLAUSE 4
 4.2 UNDERSTANDING THE NEEDS AND EXPECTATIONS OF INTERESTED PARTIES – CLAUSE
 4.3 DETERMINING THE SCOPE OF THE ORGANISATION SECURITY MANAGEMENT SYSTEM –
CLAUSE
 4.4 INFORMATION SECURITY MANAGEMENT SYSTEM – CLAUSE
 5. LEADERSHIP – CLAUSE
 5.1 LEADERSHIP AND COMMITMENT – CLAUSE
 5.2 POLICY – CLAUSE
 5.3 ORGANISATIONAL ROLES, RESPONSIBILITY AND AUTHORITIES – CLAUSE
 6. PLANNING – CLAUSE
 6.1 ACTIONS TO ADDRESS RISKS AND OPPORTUNITIES – CLAUSE
 6.1.1 General – Clause
 6.1.2 Information security risk assessment – Clause
 6.1.3 Information security risk treatment – Clause
 6.2 INFORMATION SECURITY OBJECTIVES AND PLANNING TO ACHIEVE THEM – CLAUSE
 7 SUPPORT – CLAUSE
 7.1 RESOURCES – CLAUSE
 7.2 COMPETENCE – CLAUSE
 7.3 AWARENESS – CLAUSE
 7.4 COMMUNICATION – CLAUSE
 7.5 DOCUMENTED INFORMATION – CLAUSE
 7.5.1 General – Clause
 7.5.2 Creating and updating – Clause
 7.5.3 Control of documented information – Clause
 8 OPERATION – CLAUSE
 8.1 OPERATIONAL PLANNING AND CONTROL – CLAUSE
 8.2 INFORMATION SECURITY RISK ASSESSMENT – CLAUSE
 8.3 INFORMATION SECURITY RISK TREATMENT – CLAUSE
 9 PERFORMANCE EVALUATION – CLAUSE
 9.1 MONITORING, MEASUREMENT, ANALYSIS AND EVALUATION –
CLAUSE
 9.2 INTERNAL AUDIT – CLAUSE
 9.3 MANAGEMENT REVIEW – CLAUSE
 10 IMPROVEMENT – CLAUSE
 10.1 NONCONFORMITY AND CORRECTIVE ACTION – CLAUSE
 10.2 CONTINUAL IMPROVEMENT – CLAUSE
The End

Mais conteúdo relacionado

Mais procurados

7-lessons-learned-from-bsimm
7-lessons-learned-from-bsimm7-lessons-learned-from-bsimm
7-lessons-learned-from-bsimm
Marie Peters
 

Mais procurados (12)

Identity Management as a Compliance Booster
Identity Management as a Compliance BoosterIdentity Management as a Compliance Booster
Identity Management as a Compliance Booster
 
SECURITY
SECURITYSECURITY
SECURITY
 
What does backup have to do with IT security?
What does backup have to do with IT security?What does backup have to do with IT security?
What does backup have to do with IT security?
 
Pharos Security Solution
Pharos Security SolutionPharos Security Solution
Pharos Security Solution
 
7-lessons-learned-from-bsimm
7-lessons-learned-from-bsimm7-lessons-learned-from-bsimm
7-lessons-learned-from-bsimm
 
Winning the war on data breaches in a changing data landscape
Winning the war on data breaches in a changing data landscapeWinning the war on data breaches in a changing data landscape
Winning the war on data breaches in a changing data landscape
 
Computer security plan
Computer security planComputer security plan
Computer security plan
 
The Connors Group Cyber Security Infographic
The Connors Group Cyber Security Infographic The Connors Group Cyber Security Infographic
The Connors Group Cyber Security Infographic
 
MAPPING_ISO27001_TO_COBIT4.1
MAPPING_ISO27001_TO_COBIT4.1MAPPING_ISO27001_TO_COBIT4.1
MAPPING_ISO27001_TO_COBIT4.1
 
10 steps to cyber security
10 steps to cyber security10 steps to cyber security
10 steps to cyber security
 
10 steps to cyber security
10 steps to cyber security10 steps to cyber security
10 steps to cyber security
 
How to Improve Your Board’s Cyber Security Literacy
How to Improve Your Board’s Cyber Security LiteracyHow to Improve Your Board’s Cyber Security Literacy
How to Improve Your Board’s Cyber Security Literacy
 

Destaque (12)

L006 IT Strategy (2016)
L006 IT Strategy (2016)L006 IT Strategy (2016)
L006 IT Strategy (2016)
 
A Practical Approach to Managing Information System Risk
A Practical Approach to Managing Information System RiskA Practical Approach to Managing Information System Risk
A Practical Approach to Managing Information System Risk
 
Managing International Information Systems
Managing International Information Systems Managing International Information Systems
Managing International Information Systems
 
Chapter 4 MIS
Chapter 4 MISChapter 4 MIS
Chapter 4 MIS
 
Bio - Resume
Bio - ResumeBio - Resume
Bio - Resume
 
Apache SystemML 2016 Summer class primer by Berthold Reinwald
Apache SystemML 2016 Summer class primer by Berthold ReinwaldApache SystemML 2016 Summer class primer by Berthold Reinwald
Apache SystemML 2016 Summer class primer by Berthold Reinwald
 
Remodelación de París y eclecticismo
Remodelación de París y eclecticismoRemodelación de París y eclecticismo
Remodelación de París y eclecticismo
 
018 4877 power your life 0
018 4877 power your life 0018 4877 power your life 0
018 4877 power your life 0
 
Type cast operator
Type cast operatorType cast operator
Type cast operator
 
New Items - Constellation 2017
New Items - Constellation 2017New Items - Constellation 2017
New Items - Constellation 2017
 
Tabla Salarial-Construcción civil- Peru
Tabla Salarial-Construcción civil- PeruTabla Salarial-Construcción civil- Peru
Tabla Salarial-Construcción civil- Peru
 
mkombe munga cv use
mkombe munga cv usemkombe munga cv use
mkombe munga cv use
 

Semelhante a Isms info

Solve the exercise in security management.pdf
Solve the exercise in security management.pdfSolve the exercise in security management.pdf
Solve the exercise in security management.pdf
sdfghj21
 
Information Security Management Systems(ISMS) By Dr Wafula
Information Security Management Systems(ISMS) By Dr  WafulaInformation Security Management Systems(ISMS) By Dr  Wafula
Information Security Management Systems(ISMS) By Dr Wafula
Discover JKUAT
 
Information Systems Security & Strategy
Information Systems Security & StrategyInformation Systems Security & Strategy
Information Systems Security & Strategy
Tony Hauxwell
 
Isa Prog Need L
Isa Prog Need LIsa Prog Need L
Isa Prog Need L
R_Yanus
 
CHAPTER 6INFORMATION GOVERNANCEInformation Governance Po.docx
CHAPTER 6INFORMATION GOVERNANCEInformation Governance Po.docxCHAPTER 6INFORMATION GOVERNANCEInformation Governance Po.docx
CHAPTER 6INFORMATION GOVERNANCEInformation Governance Po.docx
robertad6
 
Safety Management System1SMS-1Jeffrey D Carpenter, CSP.docx
Safety Management System1SMS-1Jeffrey D Carpenter, CSP.docxSafety Management System1SMS-1Jeffrey D Carpenter, CSP.docx
Safety Management System1SMS-1Jeffrey D Carpenter, CSP.docx
rtodd599
 

Semelhante a Isms info (20)

Solve the exercise in security management.pdf
Solve the exercise in security management.pdfSolve the exercise in security management.pdf
Solve the exercise in security management.pdf
 
A to Z of Information Security Management
A to Z of Information Security ManagementA to Z of Information Security Management
A to Z of Information Security Management
 
Information Security Management Systems(ISMS) By Dr Wafula
Information Security Management Systems(ISMS) By Dr  WafulaInformation Security Management Systems(ISMS) By Dr  Wafula
Information Security Management Systems(ISMS) By Dr Wafula
 
Information Security Management System: Emerging Issues and Prospect
Information Security Management System: Emerging Issues and ProspectInformation Security Management System: Emerging Issues and Prospect
Information Security Management System: Emerging Issues and Prospect
 
ADDRESSING CORPORATE CONCERNS
ADDRESSING CORPORATE CONCERNSADDRESSING CORPORATE CONCERNS
ADDRESSING CORPORATE CONCERNS
 
D1 security and risk management v1.62
D1 security and risk management  v1.62D1 security and risk management  v1.62
D1 security and risk management v1.62
 
Information Systems Security & Strategy
Information Systems Security & StrategyInformation Systems Security & Strategy
Information Systems Security & Strategy
 
Pindad iso27000 2016 smki
Pindad   iso27000 2016 smkiPindad   iso27000 2016 smki
Pindad iso27000 2016 smki
 
Ch.5 rq (1)
Ch.5 rq (1)Ch.5 rq (1)
Ch.5 rq (1)
 
ISMS Requirements
ISMS RequirementsISMS Requirements
ISMS Requirements
 
Chapter003
Chapter003Chapter003
Chapter003
 
Isa Prog Need L
Isa Prog Need LIsa Prog Need L
Isa Prog Need L
 
The Significance of IT Security Management & Risk Assessment
The Significance of IT Security Management & Risk AssessmentThe Significance of IT Security Management & Risk Assessment
The Significance of IT Security Management & Risk Assessment
 
SBIC Report : Transforming Information Security: Future-Proofing Processes
SBIC Report : Transforming Information Security: Future-Proofing ProcessesSBIC Report : Transforming Information Security: Future-Proofing Processes
SBIC Report : Transforming Information Security: Future-Proofing Processes
 
CHAPTER 6INFORMATION GOVERNANCEInformation Governance Po.docx
CHAPTER 6INFORMATION GOVERNANCEInformation Governance Po.docxCHAPTER 6INFORMATION GOVERNANCEInformation Governance Po.docx
CHAPTER 6INFORMATION GOVERNANCEInformation Governance Po.docx
 
Protecting business interests with policies for it asset management it-tool...
Protecting business interests with policies for it asset management   it-tool...Protecting business interests with policies for it asset management   it-tool...
Protecting business interests with policies for it asset management it-tool...
 
Information Security Governance and Strategy - 3
Information Security Governance and Strategy - 3Information Security Governance and Strategy - 3
Information Security Governance and Strategy - 3
 
Safety Management System1SMS-1Jeffrey D Carpenter, CSP.docx
Safety Management System1SMS-1Jeffrey D Carpenter, CSP.docxSafety Management System1SMS-1Jeffrey D Carpenter, CSP.docx
Safety Management System1SMS-1Jeffrey D Carpenter, CSP.docx
 
Iso 27001 2005- by netpeckers consulting
Iso 27001 2005- by netpeckers consultingIso 27001 2005- by netpeckers consulting
Iso 27001 2005- by netpeckers consulting
 
Iso 27001 awareness
Iso 27001 awarenessIso 27001 awareness
Iso 27001 awareness
 

Mais de Abhisek Gupta

DataBasedAchievement
DataBasedAchievementDataBasedAchievement
DataBasedAchievement
Abhisek Gupta
 
linkedin-leadership-report-india
linkedin-leadership-report-indialinkedin-leadership-report-india
linkedin-leadership-report-india
Abhisek Gupta
 
2016-india-talent-trends-v3
2016-india-talent-trends-v32016-india-talent-trends-v3
2016-india-talent-trends-v3
Abhisek Gupta
 
2016-Trends-in-Global-Employee-Engagement
2016-Trends-in-Global-Employee-Engagement2016-Trends-in-Global-Employee-Engagement
2016-Trends-in-Global-Employee-Engagement
Abhisek Gupta
 
IN-salary-guide-2015
IN-salary-guide-2015IN-salary-guide-2015
IN-salary-guide-2015
Abhisek Gupta
 

Mais de Abhisek Gupta (19)

Fresher hiring guidebook
Fresher hiring guidebookFresher hiring guidebook
Fresher hiring guidebook
 
Employee training
Employee trainingEmployee training
Employee training
 
Performance appraisals
Performance appraisalsPerformance appraisals
Performance appraisals
 
The johari-window final
The johari-window finalThe johari-window final
The johari-window final
 
Technology Branding
Technology BrandingTechnology Branding
Technology Branding
 
Employee communication
Employee communicationEmployee communication
Employee communication
 
Innovation lab
Innovation labInnovation lab
Innovation lab
 
New joinee
New joineeNew joinee
New joinee
 
TeamManagement
TeamManagementTeamManagement
TeamManagement
 
ProjectsCompleted
ProjectsCompletedProjectsCompleted
ProjectsCompleted
 
DataBasedAchievement
DataBasedAchievementDataBasedAchievement
DataBasedAchievement
 
Social media
Social mediaSocial media
Social media
 
linkedin-leadership-report-india
linkedin-leadership-report-indialinkedin-leadership-report-india
linkedin-leadership-report-india
 
2016-india-talent-trends-v3
2016-india-talent-trends-v32016-india-talent-trends-v3
2016-india-talent-trends-v3
 
2016-Trends-in-Global-Employee-Engagement
2016-Trends-in-Global-Employee-Engagement2016-Trends-in-Global-Employee-Engagement
2016-Trends-in-Global-Employee-Engagement
 
In hc-deloitte-india-annual-compensation-trends-survey-report-fy-2016-noexp
In hc-deloitte-india-annual-compensation-trends-survey-report-fy-2016-noexpIn hc-deloitte-india-annual-compensation-trends-survey-report-fy-2016-noexp
In hc-deloitte-india-annual-compensation-trends-survey-report-fy-2016-noexp
 
IN-salary-guide-2015
IN-salary-guide-2015IN-salary-guide-2015
IN-salary-guide-2015
 
Job enrichment and skill data bank
Job enrichment and skill data bankJob enrichment and skill data bank
Job enrichment and skill data bank
 
Capturing learnings
Capturing learningsCapturing learnings
Capturing learnings
 

Último

Call Girls From Raj Nagar Extension Ghaziabad❤️8448577510 ⊹Best Escorts Servi...
Call Girls From Raj Nagar Extension Ghaziabad❤️8448577510 ⊹Best Escorts Servi...Call Girls From Raj Nagar Extension Ghaziabad❤️8448577510 ⊹Best Escorts Servi...
Call Girls From Raj Nagar Extension Ghaziabad❤️8448577510 ⊹Best Escorts Servi...
lizamodels9
 
Call Girls Hebbal Just Call 👗 7737669865 👗 Top Class Call Girl Service Bangalore
Call Girls Hebbal Just Call 👗 7737669865 👗 Top Class Call Girl Service BangaloreCall Girls Hebbal Just Call 👗 7737669865 👗 Top Class Call Girl Service Bangalore
Call Girls Hebbal Just Call 👗 7737669865 👗 Top Class Call Girl Service Bangalore
amitlee9823
 
Call Girls Electronic City Just Call 👗 7737669865 👗 Top Class Call Girl Servi...
Call Girls Electronic City Just Call 👗 7737669865 👗 Top Class Call Girl Servi...Call Girls Electronic City Just Call 👗 7737669865 👗 Top Class Call Girl Servi...
Call Girls Electronic City Just Call 👗 7737669865 👗 Top Class Call Girl Servi...
amitlee9823
 
Quick Doctor In Kuwait +2773`7758`557 Kuwait Doha Qatar Dubai Abu Dhabi Sharj...
Quick Doctor In Kuwait +2773`7758`557 Kuwait Doha Qatar Dubai Abu Dhabi Sharj...Quick Doctor In Kuwait +2773`7758`557 Kuwait Doha Qatar Dubai Abu Dhabi Sharj...
Quick Doctor In Kuwait +2773`7758`557 Kuwait Doha Qatar Dubai Abu Dhabi Sharj...
daisycvs
 
Nelamangala Call Girls: 🍓 7737669865 🍓 High Profile Model Escorts | Bangalore...
Nelamangala Call Girls: 🍓 7737669865 🍓 High Profile Model Escorts | Bangalore...Nelamangala Call Girls: 🍓 7737669865 🍓 High Profile Model Escorts | Bangalore...
Nelamangala Call Girls: 🍓 7737669865 🍓 High Profile Model Escorts | Bangalore...
amitlee9823
 
Call Girls In Noida 959961⊹3876 Independent Escort Service Noida
Call Girls In Noida 959961⊹3876 Independent Escort Service NoidaCall Girls In Noida 959961⊹3876 Independent Escort Service Noida
Call Girls In Noida 959961⊹3876 Independent Escort Service Noida
dlhescort
 
Call Girls in Delhi, Escort Service Available 24x7 in Delhi 959961-/-3876
Call Girls in Delhi, Escort Service Available 24x7 in Delhi 959961-/-3876Call Girls in Delhi, Escort Service Available 24x7 in Delhi 959961-/-3876
Call Girls in Delhi, Escort Service Available 24x7 in Delhi 959961-/-3876
dlhescort
 
Al Mizhar Dubai Escorts +971561403006 Escorts Service In Al Mizhar
Al Mizhar Dubai Escorts +971561403006 Escorts Service In Al MizharAl Mizhar Dubai Escorts +971561403006 Escorts Service In Al Mizhar
Al Mizhar Dubai Escorts +971561403006 Escorts Service In Al Mizhar
allensay1
 
FULL ENJOY Call Girls In Mahipalpur Delhi Contact Us 8377877756
FULL ENJOY Call Girls In Mahipalpur Delhi Contact Us 8377877756FULL ENJOY Call Girls In Mahipalpur Delhi Contact Us 8377877756
FULL ENJOY Call Girls In Mahipalpur Delhi Contact Us 8377877756
dollysharma2066
 
Chandigarh Escorts Service 📞8868886958📞 Just📲 Call Nihal Chandigarh Call Girl...
Chandigarh Escorts Service 📞8868886958📞 Just📲 Call Nihal Chandigarh Call Girl...Chandigarh Escorts Service 📞8868886958📞 Just📲 Call Nihal Chandigarh Call Girl...
Chandigarh Escorts Service 📞8868886958📞 Just📲 Call Nihal Chandigarh Call Girl...
Sheetaleventcompany
 

Último (20)

Call Girls From Raj Nagar Extension Ghaziabad❤️8448577510 ⊹Best Escorts Servi...
Call Girls From Raj Nagar Extension Ghaziabad❤️8448577510 ⊹Best Escorts Servi...Call Girls From Raj Nagar Extension Ghaziabad❤️8448577510 ⊹Best Escorts Servi...
Call Girls From Raj Nagar Extension Ghaziabad❤️8448577510 ⊹Best Escorts Servi...
 
The Path to Product Excellence: Avoiding Common Pitfalls and Enhancing Commun...
The Path to Product Excellence: Avoiding Common Pitfalls and Enhancing Commun...The Path to Product Excellence: Avoiding Common Pitfalls and Enhancing Commun...
The Path to Product Excellence: Avoiding Common Pitfalls and Enhancing Commun...
 
Call Girls Hebbal Just Call 👗 7737669865 👗 Top Class Call Girl Service Bangalore
Call Girls Hebbal Just Call 👗 7737669865 👗 Top Class Call Girl Service BangaloreCall Girls Hebbal Just Call 👗 7737669865 👗 Top Class Call Girl Service Bangalore
Call Girls Hebbal Just Call 👗 7737669865 👗 Top Class Call Girl Service Bangalore
 
Whitefield CALL GIRL IN 98274*61493 ❤CALL GIRLS IN ESCORT SERVICE❤CALL GIRL
Whitefield CALL GIRL IN 98274*61493 ❤CALL GIRLS IN ESCORT SERVICE❤CALL GIRLWhitefield CALL GIRL IN 98274*61493 ❤CALL GIRLS IN ESCORT SERVICE❤CALL GIRL
Whitefield CALL GIRL IN 98274*61493 ❤CALL GIRLS IN ESCORT SERVICE❤CALL GIRL
 
Falcon Invoice Discounting: The best investment platform in india for investors
Falcon Invoice Discounting: The best investment platform in india for investorsFalcon Invoice Discounting: The best investment platform in india for investors
Falcon Invoice Discounting: The best investment platform in india for investors
 
SEO Case Study: How I Increased SEO Traffic & Ranking by 50-60% in 6 Months
SEO Case Study: How I Increased SEO Traffic & Ranking by 50-60%  in 6 MonthsSEO Case Study: How I Increased SEO Traffic & Ranking by 50-60%  in 6 Months
SEO Case Study: How I Increased SEO Traffic & Ranking by 50-60% in 6 Months
 
Falcon's Invoice Discounting: Your Path to Prosperity
Falcon's Invoice Discounting: Your Path to ProsperityFalcon's Invoice Discounting: Your Path to Prosperity
Falcon's Invoice Discounting: Your Path to Prosperity
 
Call Girls Ludhiana Just Call 98765-12871 Top Class Call Girl Service Available
Call Girls Ludhiana Just Call 98765-12871 Top Class Call Girl Service AvailableCall Girls Ludhiana Just Call 98765-12871 Top Class Call Girl Service Available
Call Girls Ludhiana Just Call 98765-12871 Top Class Call Girl Service Available
 
Call Girls Electronic City Just Call 👗 7737669865 👗 Top Class Call Girl Servi...
Call Girls Electronic City Just Call 👗 7737669865 👗 Top Class Call Girl Servi...Call Girls Electronic City Just Call 👗 7737669865 👗 Top Class Call Girl Servi...
Call Girls Electronic City Just Call 👗 7737669865 👗 Top Class Call Girl Servi...
 
Quick Doctor In Kuwait +2773`7758`557 Kuwait Doha Qatar Dubai Abu Dhabi Sharj...
Quick Doctor In Kuwait +2773`7758`557 Kuwait Doha Qatar Dubai Abu Dhabi Sharj...Quick Doctor In Kuwait +2773`7758`557 Kuwait Doha Qatar Dubai Abu Dhabi Sharj...
Quick Doctor In Kuwait +2773`7758`557 Kuwait Doha Qatar Dubai Abu Dhabi Sharj...
 
Cheap Rate Call Girls In Noida Sector 62 Metro 959961乂3876
Cheap Rate Call Girls In Noida Sector 62 Metro 959961乂3876Cheap Rate Call Girls In Noida Sector 62 Metro 959961乂3876
Cheap Rate Call Girls In Noida Sector 62 Metro 959961乂3876
 
Nelamangala Call Girls: 🍓 7737669865 🍓 High Profile Model Escorts | Bangalore...
Nelamangala Call Girls: 🍓 7737669865 🍓 High Profile Model Escorts | Bangalore...Nelamangala Call Girls: 🍓 7737669865 🍓 High Profile Model Escorts | Bangalore...
Nelamangala Call Girls: 🍓 7737669865 🍓 High Profile Model Escorts | Bangalore...
 
Call Girls In Noida 959961⊹3876 Independent Escort Service Noida
Call Girls In Noida 959961⊹3876 Independent Escort Service NoidaCall Girls In Noida 959961⊹3876 Independent Escort Service Noida
Call Girls In Noida 959961⊹3876 Independent Escort Service Noida
 
Falcon Invoice Discounting: Empowering Your Business Growth
Falcon Invoice Discounting: Empowering Your Business GrowthFalcon Invoice Discounting: Empowering Your Business Growth
Falcon Invoice Discounting: Empowering Your Business Growth
 
Call Girls in Delhi, Escort Service Available 24x7 in Delhi 959961-/-3876
Call Girls in Delhi, Escort Service Available 24x7 in Delhi 959961-/-3876Call Girls in Delhi, Escort Service Available 24x7 in Delhi 959961-/-3876
Call Girls in Delhi, Escort Service Available 24x7 in Delhi 959961-/-3876
 
Call Girls Service In Old Town Dubai ((0551707352)) Old Town Dubai Call Girl ...
Call Girls Service In Old Town Dubai ((0551707352)) Old Town Dubai Call Girl ...Call Girls Service In Old Town Dubai ((0551707352)) Old Town Dubai Call Girl ...
Call Girls Service In Old Town Dubai ((0551707352)) Old Town Dubai Call Girl ...
 
Al Mizhar Dubai Escorts +971561403006 Escorts Service In Al Mizhar
Al Mizhar Dubai Escorts +971561403006 Escorts Service In Al MizharAl Mizhar Dubai Escorts +971561403006 Escorts Service In Al Mizhar
Al Mizhar Dubai Escorts +971561403006 Escorts Service In Al Mizhar
 
FULL ENJOY Call Girls In Mahipalpur Delhi Contact Us 8377877756
FULL ENJOY Call Girls In Mahipalpur Delhi Contact Us 8377877756FULL ENJOY Call Girls In Mahipalpur Delhi Contact Us 8377877756
FULL ENJOY Call Girls In Mahipalpur Delhi Contact Us 8377877756
 
Chandigarh Escorts Service 📞8868886958📞 Just📲 Call Nihal Chandigarh Call Girl...
Chandigarh Escorts Service 📞8868886958📞 Just📲 Call Nihal Chandigarh Call Girl...Chandigarh Escorts Service 📞8868886958📞 Just📲 Call Nihal Chandigarh Call Girl...
Chandigarh Escorts Service 📞8868886958📞 Just📲 Call Nihal Chandigarh Call Girl...
 
Dr. Admir Softic_ presentation_Green Club_ENG.pdf
Dr. Admir Softic_ presentation_Green Club_ENG.pdfDr. Admir Softic_ presentation_Green Club_ENG.pdf
Dr. Admir Softic_ presentation_Green Club_ENG.pdf
 

Isms info

  • 1. ( Information Security Management System )
  • 2.  An Information Security Management System (ISMS) is a systematic approach to managing sensitive company information so that it remains secure. It encompasses people, processes and IT systems.
  • 3. ISO stands for International Organization for Standardization ISO/IEC 27001:2013 is the latest International Standard an organization must be measured against to implement a successful ISMS. It helps identify, manage and minimize the range of threats to which information is regularly subjected.
  • 4. Demonstrates company’s commitment in protecting information Improved customer, employee and partner confidence Improved information security throughout the organization Improved security planning Security management effectiveness Ongoing protection over Information Reduced risk over information
  • 5.  The objective of having an organizational information security framework is to help achieve an effective and efficient way of managing Information security within the organization. A management framework shall be established to manage and control activities related to information security within the organization.  Security Management forum consisting of leadership team shall be established to approve the information security policy, assign security roles and co-ordinate the implementation of security across the organization.
  • 6.  Information security advisory forum shall be established and made available within the organization. Contacts with external security specialists shall be developed to keep up with industrial trends, monitor standards and assessment methods. This would help to apply the latest countermeasures while dealing with security incidents.  A multi-disciplinary approach to information security should be encouraged, e.g. involving the co-operation and collaboration of managers, users, administrators, application designers, auditors and security staff, and specialist skills in areas such as Legal, Business Continuity Planning, insurance and risk management.  There is a need to define the roles and responsibilities of the individual functions so as to cover the entire the spectrum of the Information Security. This would help establish accountability and streamlining the operations.
  • 7.
  • 8. TABLE OF CONTENTS  DOCUMENT HISTORY AND RETENTION  DOCUMENTATION APPROVAL  DISTRIBUTION LIST  TABLE OF CONTENTS  1.INTRODUCTION  2. LINE OF BUSINESS
  • 9.  3.ORGANIZATION STRUCTURE  3.1 DEVELOPMENT  3.2 INTEGRATION  3.3 PROJECT MANAGEMENT  3.4 PRODUCT MANAGEMENT  3.5 RELEASE & CONFIGURATION MANAGEMENT  3.6 CUSTOMER HELP DESK AND TECHNICAL SUPPORT  3.7 SETUP& IMPLEMENTATION  3.8 SALES AND ACCOUNT MANAGEMENT  3.9 PR & MARKETING  3.10 INFORMATION TECHNOLOGY  3.11 HUMAN RESOURCE  3.12 ADMIN  3.13 FINANCE
  • 10.  4.1 UNDERSTANDING THE ORGANISATION AND ITS CONTEXT –CLAUSE 4  4.2 UNDERSTANDING THE NEEDS AND EXPECTATIONS OF INTERESTED PARTIES – CLAUSE  4.3 DETERMINING THE SCOPE OF THE ORGANISATION SECURITY MANAGEMENT SYSTEM – CLAUSE  4.4 INFORMATION SECURITY MANAGEMENT SYSTEM – CLAUSE  5. LEADERSHIP – CLAUSE  5.1 LEADERSHIP AND COMMITMENT – CLAUSE  5.2 POLICY – CLAUSE  5.3 ORGANISATIONAL ROLES, RESPONSIBILITY AND AUTHORITIES – CLAUSE  6. PLANNING – CLAUSE  6.1 ACTIONS TO ADDRESS RISKS AND OPPORTUNITIES – CLAUSE  6.1.1 General – Clause  6.1.2 Information security risk assessment – Clause  6.1.3 Information security risk treatment – Clause  6.2 INFORMATION SECURITY OBJECTIVES AND PLANNING TO ACHIEVE THEM – CLAUSE
  • 11.  7 SUPPORT – CLAUSE  7.1 RESOURCES – CLAUSE  7.2 COMPETENCE – CLAUSE  7.3 AWARENESS – CLAUSE  7.4 COMMUNICATION – CLAUSE  7.5 DOCUMENTED INFORMATION – CLAUSE  7.5.1 General – Clause  7.5.2 Creating and updating – Clause  7.5.3 Control of documented information – Clause
  • 12.  8 OPERATION – CLAUSE  8.1 OPERATIONAL PLANNING AND CONTROL – CLAUSE  8.2 INFORMATION SECURITY RISK ASSESSMENT – CLAUSE  8.3 INFORMATION SECURITY RISK TREATMENT – CLAUSE  9 PERFORMANCE EVALUATION – CLAUSE  9.1 MONITORING, MEASUREMENT, ANALYSIS AND EVALUATION – CLAUSE  9.2 INTERNAL AUDIT – CLAUSE  9.3 MANAGEMENT REVIEW – CLAUSE  10 IMPROVEMENT – CLAUSE  10.1 NONCONFORMITY AND CORRECTIVE ACTION – CLAUSE  10.2 CONTINUAL IMPROVEMENT – CLAUSE