SBS - The best value in QMS software

What ISO certification is for an IT department?

Johnny Quality

Quite Involved in Discussions
#11
ISO standards generally tell you what should be done or achieved. More like a list of principles rather than BoM with specific items.

ISO 27001:2013 (Information technology — Security techniques — Information security management systems — Requirements) has the following scope:

This International Standard specifies the requirements for establishing, implementing, maintaining and continually improving an information security management system within the context of the organization. This International Standard also includes requirements for the assessment and treatment of information security risks tailored to the needs of the organization. The requirements set out in this International Standard are generic and are intended to be applicable to all organizations, regardless of type, size or nature. Excluding any of the requirements specified in Clauses 4 to 10 is not acceptable when an organization claims conformity to this International Standard.

If this sounds like it could be of value to your organization then I suggest you grab a copy of the standard and see what's inside.
 
Last edited by a moderator:
Elsmar Forum Sponsor
#12
ISO standards generally tell you what should be done or achieved. More like a list of principles rather than BoM with specific items.

ISO 27001:2013 (Information technology — Security techniques — Information security management systems — Requirements) has the following scope:

This International Standard specifies the requirements for establishing, implementing, maintaining and continually improving an information security management system within the context of the organization. This International Standard also includes requirements for the assessment and treatment of information security risks tailored to the needs of the organization. The requirements set out in this International Standard are generic and are intended to be applicable to all organizations, regardless of type, size or nature. Excluding any of the requirements specified in Clauses 4 to 10 is not acceptable when an organization claims conformity to this International Standard.

If this sounds like it could be of value to your organization then I suggest you grab a copy of the standard and see what's inside.
thank you for this.
ISO standards generally tell you what should be done or achieved. More like a list of principles rather than BoM with specific items.

ISO 27001:2013 (Information technology — Security techniques — Information security management systems — Requirements) has the following scope:

This International Standard specifies the requirements for establishing, implementing, maintaining and continually improving an information security management system within the context of the organization. This International Standard also includes requirements for the assessment and treatment of information security risks tailored to the needs of the organization. The requirements set out in this International Standard are generic and are intended to be applicable to all organizations, regardless of type, size or nature. Excluding any of the requirements specified in Clauses 4 to 10 is not acceptable when an organization claims conformity to this International Standard.

If this sounds like it could be of value to your organization then I suggest you grab a copy of the standard and see what's inside.
thank you for this info.
 

qualprod

Trusted Information Resource
#13
because i just got to know this recently about ISO 27001:2013, isn't this for IT ?
There is no doubt that the implementation of a Standard gives you valuable and proved guidelines and tools to help your business, however
involves resources: people, training, certification, maintenance of system and certificate, auditing and of course for all of this , you need to have money.
Other point, you may save money, to have benefits of the implementation, without being certified, but again the question, what is the reason?
Most of the customers, when require to you a standard , they need the certification.
On the other hand, not necessarily by applying the standard, you will have a better performance, you might have better practice/knowledge
without the standard.
An example: Toyota , until I know, doesn´t have ISO, however has other methods/preactices which uses to be into the
most successful automotive manufacturers.
Hope this helps
 

indubioush

Quite Involved in Discussions
#14
ow the network cabling is done, or what type of switches are used..
ISO 27001 will not provide you with detailed information like this. If you do a web search for ISO 27001 checklist, you will see some checklists that will give you an idea of the content in this standard.

It seems to me that you need to find someone who has experience setting up servers to help you.
 
Thread starter Similar threads Forum Replies Date
T Legalizing ISO 13485 certification with an US state department of health ISO 13485:2016 - Medical Device Quality Management Systems 5
G ISO 13485 Certification - Can we get the ISO 13485 certification prior to shipment of the device? ISO 13485:2016 - Medical Device Quality Management Systems 6
N Does anyone use SGS for ISO 13485 / CE certification Registrars and Notified Bodies 0
D ISO 13485 & CE Certification for Surgical Gloves CE Marking (Conformité Européene) / CB Scheme 0
M ISO 13485:2016 Certification Scope ISO 13485:2016 - Medical Device Quality Management Systems 2
Le Chiffre Online training available for ISO/IEC 17021-1: Requirements for bodies providing audit and certification of management systems Training - Internal, External, Online and Distance Learning 3
M Scope for ISO 13485 Certification of a Translation Service Provider ISO 13485:2016 - Medical Device Quality Management Systems 17
A ISO 13485 Certification for Resin Manufacturer ISO 13485:2016 - Medical Device Quality Management Systems 4
X ISO 17025 certification for Laboratory for online gambling products ISO 17025 related Discussions 3
N 93/42/EEC certification without ISO 13485 EU Medical Device Regulations 3
P ISO 9001 certification with zero customers? ISO 9000, ISO 9001, and ISO 9004 Quality Management Systems Standards 11
E ISO 13485 QMS certification as a Supplier ISO 13485:2016 - Medical Device Quality Management Systems 8
J New Job Position - Achieving ISO 13485 Certification ISO 13485:2016 - Medical Device Quality Management Systems 5
M ISO 13485-2016 online certification ISO 13485:2016 - Medical Device Quality Management Systems 3
J How much to charge for helping a startup company with initial ISO 13485 certification? Consultants and Consulting 3
S Requirements to obtain ISO 50001 Certification ISO 14001:2015 Specific Discussions 2
P ISO Class 8 particle count (annual certification vs monitoring) ISO 13485:2016 - Medical Device Quality Management Systems 4
T ISO/IEC 17065 certification scheme Help Other ISO and International Standards and European Regulations 7
P ISO 13485:2016 MDSAP Certification Fee Survey ISO 13485:2016 - Medical Device Quality Management Systems 6
K Restricted Scope of ISO 13485 Certification ISO 13485:2016 - Medical Device Quality Management Systems 7
G USAS ISO 9001 Certification, online is it worth it? ISO 9000, ISO 9001, and ISO 9004 Quality Management Systems Standards 3
M Using your Manufacturer's ISO certification ISO 13485:2016 - Medical Device Quality Management Systems 5
Nicole Desouza ISO / AS Certification - Small business with less than 100 employees ISO 9000, ISO 9001, and ISO 9004 Quality Management Systems Standards 7
O ISO 9001 new certification advice request - Develop a QMS from scratch ISO 9000, ISO 9001, and ISO 9004 Quality Management Systems Standards 9
G Is ISO 9001:2015 certification worth it for a company that does only contract manufacturing? Quality Management System (QMS) Manuals 14
J ISO 9001 - How to decide if a company needs or will benefit from certification? ISO 9000, ISO 9001, and ISO 9004 Quality Management Systems Standards 6
B Implications of Dropping ISO 9001 Certification ISO 9000, ISO 9001, and ISO 9004 Quality Management Systems Standards 5
S ISO 9001:2015 & ISO 14001 Re-Certification Audit Preparation ISO 14001:2015 Specific Discussions 8
R Scope of ISO 13485 certification ISO 13485:2016 - Medical Device Quality Management Systems 6
M Informational BSI – ISO 13485 and products with May 2020 deadline for MDR certification Medical Device and FDA Regulations and Standards News 0
P List of ISO certificate registrars around the world - ISO certification databases ISO 9000, ISO 9001, and ISO 9004 Quality Management Systems Standards 2
Sidney Vianna Interesting Discussion Legal compliance as part of ISO 45001 accredited certification. Major OSHA penalties in the USA. Occupational Health & Safety Management Standards 15
somashekar ISO 9001 Certification, School context - Students are...? ISO 9000, ISO 9001, and ISO 9004 Quality Management Systems Standards 13
Q Does anyone have experience implementing a QMS without ISO certification? Quality Manager and Management Related Issues 2
S ISO 13485 scope of certification - We are a virtual manufacturer ISO 13485:2016 - Medical Device Quality Management Systems 1
P Relevance of Offsite backups process compliance and ISO 27001 certification. IEC 27001 - Information Security Management Systems (ISMS) 3
P ISO 9001:2015 Supplier Certification Requirements ISO 9000, ISO 9001, and ISO 9004 Quality Management Systems Standards 17
I ISO 9001 and VWAD (Verified-Accredited Wholesale Distributors certification) Coffee Break and Water Cooler Discussions 1
M Start-Up Company looking for ISO 13485 Certification Body and Medical Device CE Mark Notified Body Registrars and Notified Bodies 6
Coury Ferguson Report the CB... Certification Audit (IATF 16949) not to ISO 17021 Registrars and Notified Bodies 1
H Can an OEM use an CM ISO 13485 certification in helping to get out CE Mark? ISO 13485:2016 - Medical Device Quality Management Systems 2
S Responsibilities between government owner and private subcontractor of a power plant seeking ISO 9001 certification ISO 9000, ISO 9001, and ISO 9004 Quality Management Systems Standards 9
C Must your reference standard provider be ISO17034 certified to meet your testing lab's ISO 17025 certification requirements? Other ISO and International Standards and European Regulations 2
J Online ISO 13485 Auditor Certification ISO 13485:2016 - Medical Device Quality Management Systems 7
B ISO 13485 certification advantages when I certify a Class 2a medical device CE Marking (Conformité Européene) / CB Scheme 12
S Portugal ISO 13485 Certification and EMC Test Houses Other Medical Device and Orthopedic Related Topics 3
K ISO 14001:2015 certification for two locations required? ISO 14001:2015 Specific Discussions 3
E ISO 9001 certification of the new plant before start of production ISO 9000, ISO 9001, and ISO 9004 Quality Management Systems Standards 18
N ISO 9001 certification with limited scope ISO 9000, ISO 9001, and ISO 9004 Quality Management Systems Standards 3
D Gaining ISO 13485 Certification - New Startup Company ISO 13485:2016 - Medical Device Quality Management Systems 5

Similar threads

Top Bottom