WHY ALIGN WITH ISO/IEC 27002:2013?

PolicyGreenFolderLarge

Clients gain advantage through alignment with international standards compliance. The simple act of managing Information Security Management Systems, or ISMS, program effectiveness supports elements in achieving compliance with all of the following laws:

  • UK Data Protection Act 1998
  • The Computer Misuse Act 1990 (UK)
  • Federal Information Security Management Act 2001 (US)
  • Gramm‐Leach‐Bliley Act (GLBA) 1999 (US)
  • Federal Financial Inst. Examination Council’s (FFIEC) security guidelines (US)
  • Sarbanes‐Oxley Act (SOX) 2002 (US)
  • State security breach notification laws (e.g. California) (US)
  • Health Insurance Portability and Accountability Act (HIPAA) 1996 (US)

GAINING THE MOST FROM YOUR ISMS PROGRAM IMPLEMENTATION

In addition to satisfying multiple aspects in world standards and regulations, the achievement of ISO 27001 certification is recognized for:

Improved company reputation and image

Proof of senior management’s commitment to the security of the organization

The effective use of best practices such as the ISMS helps companies to avoid reinventing their own policies and procedures, optimize use of scarce IT resources and reduce the occurrence of major IT risks, such as:

  • Project failures
  • Wasted investments
  • Security breaches
  • System crashes
  • Failures by service providers to understand and meet customer requirements
  • Companies embarking on the path of ISO 27001 certification need assistance to establish, monitor, maintain and measure improvement in their ISMS (27002:2013).  One key path to a more secure organization is establishing and maintain secure host baseline configurations.
Main Menu