preview

The Standards Of The Iso 27001 Certification

Decent Essays

Introduction/Background Companies are perpetually affected by compliance. If a company is to meet compliance standards, they must maintain this if they wish to continue operating. If they are unable to meet them, then the business is likely doomed for failure. It is a tough battle on either front. To make matters harder, some compliances are not actually a legal requirement, but not meeting them would spell certain doom for the company. This idea is no different for Organization A. Organization A’s reputation and maintained business continuity are contingent upon specific regulations and compliance. Without this compliance, the organization will no longer hold the respect and credibility they currently have. This paper focuses on Organization A’s attitude and handling of the ISO 27001 certification as well as organizational auditing concerns.
To provide background, Organization A is a consulting firm specializing in forensics, cyber-security, and incident response. They also have services in investigations, behavioral analytics, and e-discovery. Because of this type of work, there are occasions when the organization must testify in a court setting. The need to provide clients with verified, unaltered information is crucial in ensuring that the law is properly administered. Without specific compliances and certifications, proving the organization is acting properly becomes exceedingly difficult to do in court. The major compliance that Organization A must maintain is ISO

Get Access