Information Security Management Based on ISO 27001:2013: Do-It-Yourself and Get-Certified
Andi Rafiandi, Anis Radianis
Abstract
Andi Rafiandi, Anis Radianis
Abstract
By obtaining ISO/IEC 27001:2013 certification does not guarantee that the organization is 100 % secure, but it shows to the customers, partners and employees that the organization had taken any necessary measures to securing the information and made continuous improvement to enhance the information security practice in the organization. We constructing Do-It-Yourself and Get Certified: Information Security Management Based on ISO 27001:2013 book to provide direction and illustration for organizations who need a workable framework and person who is interested in learning on how to implement information security management effectively in accordance with ISO/IEC 27001:2013 standard. This book is organized to provide step-by-step, comprehensive guidance and many implementation examples for an organization who wants to adopt and implement the information security and wish to obtain certification of ISO/IEC 27001:2013. By providing all materials required in this book, we expect that you can DO IT YOURSELF the implementation of ISO/IEC 27001:2013 standard and GET CERTIFIED. Information security management implementation presented in this book is using Plan-Do-Check-Act (PDCA) cycle, which is a standard continuous improvement process model used by ISO.
A significance statement is not available in the OpenAlex record.
A contribution statement is not available in the OpenAlex record.
Method details are not available in the OpenAlex metadata.
Findings are not separately available in the OpenAlex metadata.
Limitations are not available in the OpenAlex metadata.
Application details are not available in the OpenAlex metadata.
By obtaining ISO/IEC 27001:2013 certification does not guarantee that the organization is 100 % secure, but it shows to the customers, partners and employees that the organization had taken any necessary measures to securing the information and made continuous improvement to enhance the information security practice in the organization. We constructing Do-It-Yourself and Get Certified: Information Security Management Based on ISO 27001:2013 book to provide direction and illustration for organizations who need a workable framework and person who is interested in learning on how to implement information security management effectively in accordance with ISO/IEC 27001:2013 standard. This book is organized to provide step-by-step, comprehensive guidance and many implementation examples for an organization who wants to adopt and implement the information security and wish to obtain certification of ISO/IEC 27001:2013. By providing all materials required in this book, we expect that you can DO IT YOURSELF the implementation of ISO/IEC 27001:2013 standard and GET CERTIFIED. Information security management implementation presented in this book is using Plan-Do-Check-Act (PDCA) cycle, which is a standard continuous improvement process model used by ISO.
Key concepts: Information security management system, Certified Information Systems Security Professional, ITIL security management, Certification, Standard of Good Practice, PDCA, Information security, Information security standards