ISO 27001 Controls – A guide to implementing and auditing

Get in the xigxag app
Already purchased

Click to open directly in the xigxag app.

This book is not purchasable in your country. Please select another book. Pre-order Buy Now ${{ price }} Send as a gift

Listen to a sample

What to expect

A must-have resource for anyone looking to establish, implement and maintain an ISMS.

Ideal for information security managers, auditors, consultants and organisations preparing for ISO 27001 certification, this book will help readers understand the requirements of an ISMS (information security management system) based on ISO 27001. Similarly, for anyone involved in internal or external audits, the book includes the definitive requirements that auditors must address when certifying organisations to ISO 27001.

The book covers:

  • Implementation guidance – what needs to be considered to fulfil the requirements of the controls from ISO/IEC 27001, Annex A. This guidance is aligned with ISO/IEC 27002, which gives advice on implementing the controls; 
  • Auditing guidance – what should be checked, and how, when examining the ISO/IEC 27001 controls to ensure that the implementation covers the ISMS control requirements. 

The implementation guidance gives clear descriptions covering what needs to be considered to achieve compliance against the requirements, with examples given throughout. The auditing guidance covers what evidence an auditor should look for in order to satisfy themselves that the requirement has been met. Useful for internal auditors and consultants, the auditing guidance will also be useful for information security managers and lead implementers as a means of confirming that their implementation and evidence to support it will be sufficient to pass an audit.

This guide is intended to be used by those involved in:

  • Designing, implementing and/or maintaining an ISMS;
  • Preparing for ISMS audits and assessments; or
  • Undertaking both internal and third-party ISMS audits and assessments

'This book provides additional background information that you can use to tailor your ISMS and make it really work for you. Its knowledge and insights will guide you in a way that makes sense of ISO 27001, and provides assurance that when implementing, you’re doing things because of the added value. Implementing an ISMS will improve your commitment to the quality of your information security environment.

The book also offers insight into auditing, simply topping it off. The guidance for both internal and external auditors provides perspective as well as a helpful insight into auditing. This is a well-rounded guide that will make your everyday ISMS-life easier.'

Marc van Delft, CISA, CRISC and ISO 27001 Lead Auditor working for a certification institution

Buy your copy today!

If you would like to reuse content from this title, please submit your permissions request via PLSclear using this link.

About xigxag

Experience the best audiobooks with xigxag, an innovative and user-friendly audiobook platform designed for seamless discovery, purchase, and enjoyment of your favorite titles. Our flexible pricing model offers bestselling audiobooks for less, providing affordable prices and the best audiobook deals without requiring a subscription. Perfect for gifting, xigxag also features convenient audiobook gift cards and in-app audiobook gifting options.

 

Beyond the listening experience, xigxag stands as an exciting alternative to big tech, embodying a strong commitment to sustainability and ethical practices. As the only B Corp certified UK audiobook service, we ensure a guilt-free listening experience from a leader in audiobook innovation.

 

Effortlessly search audiobooks, access honest audiobook reviews that evaluate both the content and narration, and easily discover hidden gems. Whether you prefer to download or stream top audiobook titles, xigxag provides the best possible listening experience anytime, anywhere, on the UK’s best independent audiobook app. Discover the future of audiobooks today.