Search
Topics
  Create an account Home  ·  Topics  ·  Downloads  ·  Your Account  ·  Submit News  ·  Top 10  
Modules
· Home
· Downloads
· FAQ
· Feedback
· Forums
· Papers
· Statistics
· Surveys
· Top 10
· Topics
· Web Links
· Your Account

Who's Online
There are currently, 14 guest(s) and 0 member(s) that are online.

You are Anonymous user. You can register for free by clicking here

ISO17799 Search



Languages
Select Interface Language:


ISO 17799 Resources
There are now quite a few BS7799, ISO27001 and ISO 17799 portals on the web offering commercial tools & products. Possibly the most complete is ISO 17799 and ISO 27001 Central.

Call for Papers
We are shortly to launch a content section for papers and articles on ISO 17799 implementation, BS7799, AS4444, ISO 27001, UNE71502, and information security generally. If you have produced a paper and would like us to publish it, please contact us via the feedback form above.

ISO 27001, ISO 27002 & ISO17799 User Group: Forums

17799.Com :: View topic - Internal Audit
 Forum FAQForum FAQ   SearchSearch   UsergroupsUsergroups   ProfileProfile   Log in to check your private messagesLog in to check your private messages   Log inLog in 

Internal Audit

 
Post new topic   Reply to topic    17799.Com Forum Index -> General Information Security Issues
View previous topic :: View next topic  
Author Message
kitty
Newbie
Newbie


Joined: Aug 08, 2004
Posts: 2

PostPosted: Fri Sep 03, 2004 8:06 pm    Post subject: Internal Audit Reply with quote

Hi!

I would like to ask what would be the scope of internal audit for BS7799?

Is this the following:
DOcumented
SOA
COP
BCP
DRP
Infosec Policy
Risk Assesment - Frequency

And what are the things to be documented?

And If there is an internal audit procedure for BS7799, can I have a copy?

Is the first part of the BS7799 which is the standard, will be this audited?
And how about the second part which is the controls? will this be audited?

Is there any available complete checklist?

Sorry for asking and requesting many things....hope for reply
Thank you.
Back to top
View user's profile
Padgetto
Guest





PostPosted: Fri Sep 17, 2004 2:06 am    Post subject: Internal Audit Reply with quote

I don't know if you are in the UK but we are holding a series of BS7799 breifings which, will answer your questions. You will also have direct access to BS7799 consultants that have taken a varity of diffrent organisations through the standard.

Please see http://www.ecsc.co.uk/7799brief.html

Hope this helps.

Padgetto
Back to top
chaitanyakunthe
Newbie
Newbie


Joined: Dec 01, 2004
Posts: 5

PostPosted: Fri Dec 03, 2004 4:55 pm    Post subject: Reply with quote

The scope for internal audit has to be mentioned in the policy. The scope would be the same as the scope for which you are certified on BS7799

Also you will be audited on part 2 of the standard, not part 1. Part 2 is the auditable part.

Yes, there is a checklist. There is a PD document called 'Are you ready for Certification'. This doc gives you a complete checklist.
Back to top
View user's profile
Arviragus
Newbie
Newbie


Joined: Dec 17, 2004
Posts: 22
Location: Ontario, Canada

PostPosted: Thu Dec 23, 2004 12:44 am    Post subject: Call me...I think I have what you want... Reply with quote

I have a flowchart, plan template, audit schedule and methodology. Contact me at arviragus at gmail dot com.
Back to top
View user's profile
Display posts from previous:   
Post new topic   Reply to topic    17799.Com Forum Index -> General Information Security Issues All times are GMT + 10 Hours
Page 1 of 1

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum

Powered by phpBB 2.0.8 © 2001 phpBB Group
phpBB port v2.1 based on Tom Nitzschner's phpbb2.0.6 upgraded to phpBB 2.0.4 standalone was developed and tested by:
ArtificialIntel, ChatServ, mikem,
sixonetonoffun and Paul Laudanski (aka Zhen-Xjell).

Version 2.1 by Nuke Cops © 2003 http://www.nukecops.com

Forums ©

 
The ISO 17799 Implementation Forum: A BS7799 / ISO27001, ISO17799 and ISO 27000 User Group
All logos and trademarks are property of their respective owner. Comments are property of their posters. The rest © 2005 ISO17799 / ISO 27002 Forum
AKA: BS 7799, SPE 20003, SS 627799, JIS X 5080, AS/NZS 4444, ISO 27001. Other links: UKAS accreditation body. SV
Website source phpnuke.org (c) 2003, and is Free Software under GNU / GPL licence. All Rights Are Reserved.