100% de satisfacción garantizada Inmediatamente disponible después del pago Tanto en línea como en PDF No estas atado a nada 4,6 TrustPilot
logo-home
Examen

ISO 27001 EXAM-NEW UPDATED

Puntuación
-
Vendido
-
Páginas
6
Grado
A+
Subido en
12-10-2024
Escrito en
2024/2025

ISO 27001 EXAM-NEW UPDATED...

Institución
ISO 27001
Grado
ISO 27001

Vista previa del contenido

ISO 27001 EXAM-NEW UPDATED

What is the scope of the certification?

The delivery and development of the Stravito Service

What happens during the Stage 1 audit?

a review to ensure that all necessary documents, policies and processes exist

What happens during the second audit?

Ensure we work by the policies in place. Done through interviews and reviewal
of "proof" such as audit logs and information about the configuration of our
technical infrastructure.

In one sentence what is the scope of the current ISMS?

The Stravito platform and the development of it.

What is your information security policy?

Our Information Security Handbook & Policy targets all employees at
Stravito. Except Incident management processes and Risk management
processes

How is security awareness performed and measured?

Annual security awareness training for all employees AND targeted training for
certain teams (Tech, GM)

Is leadership committed to Information Security?

YES ! InfoSec is an essential part of Stravito SaaS platform. Our customers rely
on us to keep their confidential information safe, which we are contractually
obligated to.

What are the long term goals and objectives with Information Security?

To ensure that we build a product that is both secure and trustworthy. Security
is a cornerstone of our business in order for us to to keep existing customers
and gain new customers. (add more)

, How do GM review the efficiency of the ISMS?

Through a management review process. - - Head of Security keeps GM
informed about ongoing activities and risks, with a feedback loop for
continuous improvement of the ISMS. We also set quarterly OKR's reflecting
the ongoing activities.

Could you explain the three lines of defense model?

the 1st line of defense managers -> enough resources to work with risk
management and infosec and employees -> day to day work at an operational
level, i.e. identifying risk and implementing security controls

2nd line of defense consists of organisational functions supporting general
management in creating policies, processes and procedures and supporting the
rest of the organisation with expert knowledge and training.

the 3rd line of defense consists of audit functions ensuring that the 2nd line of
defense does what they are assigned to do

What is the CEO's role in the ISMS?

the CEO is the owner of the information security policy

the ceo delegates the responsibility for security-related documentation to the
head of security.

all policy changes must be approved and signed by the head of security.

the ceo is also accountable for processing of personal data where stravito is
the data processor..

What are the interested parties of stravito's ISMS?

ceo
general management,
head of security
customers (of the stravito cloud service),
data protection agencies

Escuela, estudio y materia

Institución
ISO 27001
Grado
ISO 27001

Información del documento

Subido en
12 de octubre de 2024
Número de páginas
6
Escrito en
2024/2025
Tipo
Examen
Contiene
Preguntas y respuestas

Temas

Conoce al vendedor

Seller avatar
Los indicadores de reputación están sujetos a la cantidad de artículos vendidos por una tarifa y las reseñas que ha recibido por esos documentos. Hay tres niveles: Bronce, Plata y Oro. Cuanto mayor reputación, más podrás confiar en la calidad del trabajo del vendedor.
luzlinkuz Chamberlain University
Ver perfil
Seguir Necesitas iniciar sesión para seguir a otros usuarios o asignaturas
Vendido
1476
Miembro desde
4 año
Número de seguidores
851
Documentos
29651
Última venta
23 horas hace

3.8

311 reseñas

5
135
4
62
3
57
2
17
1
40

Documentos populares

Recientemente visto por ti

Por qué los estudiantes eligen Stuvia

Creado por compañeros estudiantes, verificado por reseñas

Calidad en la que puedes confiar: escrito por estudiantes que aprobaron y evaluado por otros que han usado estos resúmenes.

¿No estás satisfecho? Elige otro documento

¡No te preocupes! Puedes elegir directamente otro documento que se ajuste mejor a lo que buscas.

Paga como quieras, empieza a estudiar al instante

Sin suscripción, sin compromisos. Paga como estés acostumbrado con tarjeta de crédito y descarga tu documento PDF inmediatamente.

Student with book image

“Comprado, descargado y aprobado. Así de fácil puede ser.”

Alisha Student

Preguntas frecuentes