Information Security and ISO 27001
URM has been providing ISO 27001 consultancy and training services since the Standard was introduced in 2005. The Company’s unique proposition is that not only will it provide a 100% guaranteed success in any certification project, but URM will ensure that any implemented solution will be tailored, appropriate and sustainable to the client organisation.
Importance of Information Security
Information security can be defined as protecting the confidentiality, integrity and availability of information (electronic, print or other form) and information systems. The increasing use of on line and shared services, Internet technology and the need to upload and share information rapidly over networks has provided organisations with numerous business benefits but has also introduced a whole spectrum of new threats. The challenge for information security professionals is achieving the optimum balance between organisational productivity and information security.
What is ISO 27001?
ISO/IEC 27001 is an information security management system (ISMS) Standard which was published in October 2005 by the International Organisation for Standardization (ISO) and the International Electrotechnical Commission (IEC). Along with ISO 27002 *(code of practice) ISO 27001 provides organisations worldwide with a framework for managing their information security. Registration entails an external assessment of its ISMS by an accredited certification body and provides organisations with the best means of demonstrating its information security commitment and capabilities to internal and external stakeholders.
*ISO 27002 provides guidance and best practice information on the implementation of each of the 133 controls within the Standard
