Mention most relevant clause of iso 27001:2005, Computer Network Security

Assignment Help:

QUESTION

(In this question, you will need to use the ISO 27001:2005 and ISO 27002:2005 standards)

For each of the situations below, comment on the following:

1. Mention most relevant clause of ISO 27001:2005

2. Whether the practice followed in the organization is appropriate and implemented as per the requirement of relevant control of ISO 27001

3. If not, indicate the deviation.

Situation A

An organization wants to dispose its old PC's and to get new ones in exchange. What steps should it take to meet the requirement of ISO 27001: 2005?

Situation B

An organisation which is ISO 27001 certified has a back-up policy which calls for sending by courier on a weekly basis a copy of its latest back up media for storage offsite. What requirements must the organisation meet to be compliant with ISO 27001?


Related Discussions:- Mention most relevant clause of iso 27001:2005

Network security, Network security has become much more complex than ever b...

Network security has become much more complex than ever before. New types and sources of network security threats, always-on high-speed Internet connections, wireless networking, a

Increasingly significant impact on society, Question: (a) African gove...

Question: (a) African governments are slowly shifting to more transparent ICT regulations. However, but limited spectrum availability remains a key barrier to sustaining lon

State the fermat-euler theorem, Question: (a) Prove that every positive...

Question: (a) Prove that every positive integer n can be factorized into a product of prime powers. (b) State the Fermat-Euler theorem as needed in the RSA system. (c) Us

Cyber security - vulnerabilities, The world has to deal with newly released...

The world has to deal with newly released vulnerabilities on a daily basis.  These vulnerabilities eventually lead to active exploits of systems, and it is our job as cyber securit

Ping command , In the early days when there were some dozen computers machi...

In the early days when there were some dozen computers machine on the network, it was done individually but now as we have looked that there are millions of computers on the intern

Technology, how can you enter the ASVAB practice test on line?

how can you enter the ASVAB practice test on line?

Systems development life cycle (sdlc)-information security, SDLC Systems ...

SDLC Systems development life cycle (SDLC) is process of developing information systems through analysis, design, investigation, implementation and maintenance. SDLC is called as

Plaintext, how to encryt the data in plaintext cipher

how to encryt the data in plaintext cipher

Digital certificates, A Certificate presents an organization in an official...

A Certificate presents an organization in an official digital form. This is same to an electronic identity card which serves the purpose of Identifying the owner of the certificate

Address resolution with table lookup, ADDRESS RESOLUTION WITH TABLE LOOKUP ...

ADDRESS RESOLUTION WITH TABLE LOOKUP : Resolution needs data structure that has information about address binding. A distinct address-binding table is used for every physical n

Write Your Message!

Captcha
Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd