Information Security Management

What is this?
ISMS  is Information Security Management System  based on ISO/IEC 27001:2005.

What are your benefits?
Information drives business in today's neworked environment.  Information drives business in today's networked environment. Information includes data
files on computer hard disks, paper, telephone conversations and mobile equipment.  Having physical and technical security is the first step but is not enough. New threats
occur every day. In addition there are multiple regulatory requirements on security. Identifying the information security requirements, and protecting the confidentiality,
integrity & availability of business information is ‘vital' for business survival. At the same time, having too many controls may not be cost effective. Therefore an information
security risk assessment followed by selection of appropriate controls strikes a balance between risks and controls to enable business growth.

An information security management system (ISMS) based on ISO/IEC 27001:2005 includes information security risk assessment, selection of appropriate controls to
mitigate the risks to an acceptable level and the Plan-Do-Check-Act model for continual improvement of security processes. If you do not have an ISMS, somewhere your critical
business information may be leaked out!

Why ISC?

 Our certification scheme is Process Driven and risk based.

Our auditors have audited ISMS in different environments and industries.  Their findings may help continula improvement of your ISMS.

You may integrate ISMS with Business Continuity Management System or IT Service Management or both to reduce total cost of compliance.

What do we offer?

What other management systems can we integrate with his?

ISO 9001:2008  Quality Management

ISO/IEC 20000-1:2005  IT Service Management

BS 25999-2:2007   Business Continuity Management

Compliance with legislation, for example, Data Protection Act / National Privacy Principles, APRA guidelines PPG 234 on Managing IT Security Risk.

How many have adopted this?

Nearly 40 organisations hav adopted this in Australia  and about 5000 worldwide.

What is new?

FDIS 27003:2009  Guidelines for implementation is likely to be issued shortly.

What is the next step?

Contact Sudarshan Mandyam  or go to  contact    page.