News & Resources

Defining Boundaries: Crafting the Scope of Your Information Security Management ...

ISO/IEC 27001:2022, specifically Clause 4.3, outlines the process for determining the scope of the ISMS. Establishing a well-defined scope for an Info...

Conducting Internal Context Analysis: A Guide to ISO/IEC 27001:2022 and ISO 3100...

In the realm of Information Security Management Systems (ISMS), the ability to understand and analyse the internal context of an organization is cruci...

ISO 27001 Top 10 Mistakes in implementing

As an Internal External Auditor, conducting Certification Audits on various standards for the Certification Bodies (CB), I have seen and experienced a...

ISO 13485 Lead Auditor

ISO 13485 Lead Auditor training enables you to develop the necessary expertise to perform a Medical Devices Quality Management System (MDQMS) audit by...

ISO 13053 Six Sigma Methodology Training

ISO 13053 is an international standard that describes the Six Sigma methodology. This methodology is used for improving business processes in an organ...

ISO 27005 Information Security Risk Assessment (IS...

ISO/IEC 27005 provides guidelines for the establishment of a systematic approach to Information Security risk management which is necessary to identif...

ISO 27002 Information Security Controls (ISC)

ISO/IEC 27002 is an international standard used as a reference for selecting and implementing information security controls listed in Annex A of ISO/I...

ISO 27001 Information Security Management System

ISO/IEC 27001 provides requirements for organizations seeking to establish, implement, maintain and continually improve an information security manage...

ISO 26000 Social Responsibility Management System ...

ISO 26000 is an international standard, which was developed to provide guidance on how to behave in a socially responsible way. This standard is appli...

ISO 37301 Compliance Management System (CMS)

By being certified against ISO 37301, the organization will be capable to detect all existing compliance gaps and implement appropriate corrective act...

ISO27001 2020 Cloud Security Report [ISC2]

Companies continue to rapidly migrate workloads from datacenters to the cloud, utilizing new technologies such as serverless, containers, and machine ...

Defining the scope and boundaries of the information security risk management pr...

Scope is one of the most critical areas in any Management System. Scope needs to be understood and needs to be described to take the risk out of a wro...

Get Directions