ISO/IEC 27001 (BS 7799) Implementation


The methodology of implementing the Information Security Management System is based on the six steps Management Framework. The Implementation is carried out in three phases covering the Establishment, Implementation, Compliance and Maintenance of the Information Security Management Systems as required by the Management Framework. Management Framework. The Management Framework is a set of six sequential processes. Each Process consists of Inputs for the process and Outputs for a stated process. The output of a process is the basis of identifying the Inputs to the next process.

The stages:

1. Kick off, risk identification and evaluation
2. Risk management
3. Implementation of controls
4. Pre-certification audit and support
5. Certification
6. Post certification support

The Implementation of the Information Security Management System as per ISO 17799-2005 and ISO 27001 will be carried out in six phases as per Statement of work provided by you.

Phase 1 : Kick Off, Risk Identification & Evaluation
Phase 2 : Risk Management
Phase 3 : Implementation of Controls
Phase 4 : Pre Certification Audit and Support
Phase 5 : Certification
Phase 6 : Post Certification Support