After you make a change, you make sure the improvement works its way back into the overall process. So, you create your ISMS (plan), operate under the new rules (do), review the process to ensure it’s working (check) and then use what you’ve learned to improve the process (act).
The next stage -- performing a risk assessment for all identified assets within the scope of your ISO 27001 efforts -- will be covered next week.
- ‹ previous
- 1
- 2
- 3




















