thanks, please keep watching and share if you like this video :)
@TopNotchList22 Жыл бұрын
How is soa is different from scope ?
@LearnITSecuritywithLuvJohar Жыл бұрын
In the context of ISO 27001, the Statement of Applicability (SoA) and the scope are two distinct elements, each serving a specific purpose within the Information Security Management System (ISMS). Let me clarify the differences: Scope: Definition: The scope of the ISMS defines the boundaries of what is covered by the implementation of ISO 27001 within the organization. It identifies the specific parts of the organization, the assets involved, and the extent to which the standard is applied. Purpose: Defining the scope is a crucial initial step in the ISO 27001 implementation process. It helps in clearly stating which areas, processes, and assets are within the scope of the ISMS, guiding the organization in managing information security risks effectively. Statement of Applicability (SoA): Definition: The SoA is a document that lists all the relevant controls from Annex A of ISO 27001 and specifies whether each control is applicable and implemented within the organization. Purpose: The primary purpose of the SoA is to provide a clear and concise overview of how the organization has addressed the information security requirements outlined in ISO 27001. It helps stakeholders understand which controls are in place, which are not applicable, and the justification for their inclusion or exclusion. In summary: The scope defines the boundaries and extent of the ISMS. The Statement of Applicability details the specific controls from ISO 27001 Annex A that are applicable and implemented within the defined scope.
@ratnesh121002 жыл бұрын
Please make the video on people process and technology..
@LearnITSecuritywithLuvJohar Жыл бұрын
thanks, please keep watching and share if you like this video :)
@kunalgaurav78412 жыл бұрын
Hi Sir, Thank you very much for this video,could you give a session how to write scop and prior to scope whom to ask all these details.Also, is there any channel to connect with you in person.
@LearnITSecuritywithLuvJohar Жыл бұрын
thanks, please keep watching and share if you like this video :)
@MAli-im6up Жыл бұрын
Mujhe yeh confusion hai ke critical business operations aur information jo scope mein daalne hain yeh kon decide karega? For example, HR ke 2 processes hain ek internal hiring ka aur dosra agency ke through hiring ka toh dono processes mein se konsa scope mein lena yeh kon decide karega ya batayega?
@LearnITSecuritywithLuvJohar Жыл бұрын
asset owner - jaisay ki is case mai HR head aap ka asset owner hai to wahi decide karega kaun sa business function uske liye zyada critical hai
@pramodgupta2292 жыл бұрын
Hello sir ,good evening..i am from electrical backgroundand new to information security ,currently prepairing for legal auditor...
@LearnITSecuritywithLuvJohar Жыл бұрын
thanks, please keep watching and share if you like this video :)
@hanipathan9589 Жыл бұрын
Pls bro do in english …unable to understand
@LearnITSecuritywithLuvJohar Жыл бұрын
thanks, please keep watching and share if you like this video :)