Site icon man • data • security

ISO27001 Certification

TABLE OF CONTENT (updated 2020.10) 

  1. |What is ISO27001 ?|
  2. |Key Steps in ISO27001 Certification ?|
  3. |Our ISO27001 Consultation Services|
  4. |Our Strength & Toolbox|
  5. |Further Reading: ISO27001 Content|
  6. |Training Course: ISO27001 Certification (How-To) |

What is ISO27001 ?

ISO 27001 is a well recognized international standard in Information Security Management. Many organizations choose to implement Information Security Management System (ISMS) based on ISO 27001 standards, including the Office of the Government Chief Information Officer (OGCIO), HKSAR. Also, ISO 27001 certification is a recognized proof of ISMS implementation in major security compliance programs including the followings:

What is ISMS : ISMS is a systematic approach consisting of (i) processes, (ii) technology and (iii) people that helps us to protect and manage our business information through effective risk management.

Current Version : ISO/IEC 27001:2013 is the most current version of the standard and incorporates changes made in 2017. The previous version is ISO/IEC 27001:2005

Certification : ISO 27001 Certification is [1] detailed assessment of an organization ISMS (implementation & operation) by an independent Certification Body (such as BV, SGS, BSI, etc.) and [2] the issuance of an ISO 27001 certificate of compliance.

A 27001 certificate is usually issued for a period of three (3) years. A certified organization needs to perform satisfactorily in the surveillance audits conducted by the certifying body at annual basis (usually).

Back To Top

Key Steps in ISO27001 Certification

Back To Top

Our ISO27001 Consultation Services

We provide consultancy service to facilitate & support our client’s ISO27001 certification. With over 10-year ISO27001 implementation experience, we have effective and efficient mechanism to save our clients’ time and money. Typical Scope of Work (SOW) involves the followings:

(1) Gap Analysis
(2) Ready-To-Use Documentation & Process for Compliance
(3) Training on ISO27001:2013 Certification & Maintenance

(4) Internal Audit (Pre-Assessment walk-thru)

(5) Onsite Support during official certification audit

Back To Top

Our Strength & Toolbox

On-going Progress Tracking Dashboard for Status Reporting

Back To Top

ISO27001 Content

ISO 27001:2013 is divided into ten clauses, an Annex and a Bibliography

Back To Top

Training Course – ISO27001 Certification (How-To)

Course Developer – Anthony Ma, CISM, CIPM, CEH [Chief Security – ManData Security Ltd.]

Course Description – ISO27001:2013 Framework, Controls, Measures, Certification, & Maintenance Requirements:

  1. Training (live & interactive) is developed and conducted by our Chief Security who has over 20-year industry & compliance experience
  2. Ready-to-use ISMS documentation & process template will be used as practical & real-life example illustration – based on passed successful ISMS implementation / ISO27001 certification experience.
  3. Training materials are included as deliverables in digital format (MS Powerpoint).

Delivery Mode – Onsite or Remote training sessions

Length – 2-day Fast-Track or 5-day Normal-Track (7-hour per day)

Back To Top

Exit mobile version