Requirement of relevant control of iso, Risk Management

Assignment Help:

Question:

For each of the situations below:-

(a) Mention most relevant clause of ISO 27001:2005

(b) Whether the practice followed in the organization is appropriate and implemented as per the requirement of relevant control of ISO 27001. If not, indicate the deviation

S1 An organization has planned to take third party service for managing its enterprise resource planning software. It also expects that the contracted supplier shall attend the problem within an hour the complaint is lodged to the party. How the organization ensures its requirements are taken care of by the third party and which control of ISO 27001 is applicable?

S2 A large organization has outsourced the data centre activities to a well known supplier. All the possible requirements as identified in terms of SLA and non-disclosure agreement as required, have been entered in the contract as part of ISMS implementation in the organization. The outsourced supplier is also responsible to change the system data and only intimation is given to the parent organization. No control is available with the parent organization before or during change.

S3 The organization's policy calls for only one user with super user right. The Network Administrator went on study leave for 1 yr. and the Network Supervisor was made an adhoc administrator and allotted the super user rights. After joining of the Network Administrator from leave, both of them continued with super user rights.

S4 An organization wants to dispose of 100 old Pentium PC's and to get new model P IV 2.6 GHz in exchange. What steps should it take to meet the requirement of ISO 27001: 2005?


Related Discussions:- Requirement of relevant control of iso

What are the major types of risk analysis, Question: (a) What are the t...

Question: (a) What are the two major types of risk analysis? (b) Which type is generally used in risk analysis of information systems and why? (c) Explain the methodology

Evaluation and management of risk, Evaluate the outcomes of risk management...

Evaluate the outcomes of risk management strategies The scope of strategic risk management evaluation The elements of a strategic risk management control system Issues

Internal control systems need to be continuously monitored, QUESTION (a...

QUESTION (a) Internal control systems need to be continuously monitored. This is a process that assesses the quality of the performance of a system over time and is accomplishe

Self- reflective practitioner and component, In practice, you will often be...

In practice, you will often be asked to report on a given situation, problem, project or even your own performance.  It is neither realistic nor honest nor appropriate for you to c

Display screen equipment risk assessment, Question 1: (a) Describe the ...

Question 1: (a) Describe the aspects that should be considered when assessing the fit between a person and his work. (b) Display Screen Equipment (DSE) risk assessment shoul

Explain role of the project manage, Question 1: Explain role of the pro...

Question 1: Explain role of the project manager throughout a project life cycle with reference to the following. (a) Setting up a project team (and the factors he has to con

Explain service recovery efforts, Question 1: Service quality focuses o...

Question 1: Service quality focuses on satisfying customers' needs in the moments of truth during service encounters where the customers form perceptions of the service deliver

Implementation of risk management strategy, Evaluate risk management criter...

Evaluate risk management criteria against which risk can be assessed • Key factors to take into account in risk identification Critique techniques to identify and quantify ri

GRACH, (i) Calculate the unweighted average daily variance for the time ser...

(i) Calculate the unweighted average daily variance for the time series. Explain any assumptions or simplifications you have made, and the working for each step.

Write Your Message!

Captcha
Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd