SlideShare a Scribd company logo
Iso 9001 management system




You have already implemented ISO 9001? You have heard that ISO 27001 might be a
good idea? But how can something that has to do with quality help you implement
information security?

It can, more than you may think. ISO 9001 specifies how the quality management
systems (QMS) must look like, while ISO/IEC 27001 specifies the information security
management systems (ISMS). Therefore, the "management systems" part is the same - so
what is it actually?

The philosophy of management systems has grown from the theory developed by W.
Edwards Deming during the second half of 20th century, and is based on the Plan-Do-
Check-Act cycle. Basically, this cycle consists of the following: in the Plan phase you
have to plan what you want to achieve with the management system, in the Do phase you
implement it, in the Check phase you constantly monitor whether you have achieved
what you planned, and in the Act phase you make improvements, i.e. fill the gap between
what you have planned and what you have achieved.

Although this cycle was invented with quality management in mind, it was established as
a foundation for all other management systems - information security (ISO/IEC 27001),
environment (ISO 14001), business continuity (BS 25999-2), etc. It means that some of
the elements you have implemented for the quality management system according to ISO
9001 you can use for the information security management system as well - here is the
list:

   •   Document management - the procedure used for document management in QMS
       can be used for the same purpose in ISMS, with only minor adjustments
   •   Internal audit - the same procedure can be used for both QMS and ISMS,
       although the internal audit itself would usually be done by different people since
       it is not very likely that one person would have deep enough knowledge of both
       information security and quality
   •   Corrective and preventive actions - the procedure used for QMS can be used for
       the same purpose in ISMS, although it is likely that different persons will be
       solving issues related to QMS or ISMS
   •   Human resources management - the same cycle of HR planning, training and
       evaluation is used for both management systems; naturally, the difference is in the
       profile of needed skills and knowledge
   •   Management review - the principles for management review are the same for both
       management systems; although it would not be recommendable to perform both
       reviews in parallel, management will already be accustomed to making decisions
       in QMS, so they will have better understanding of how to make decisions in the
       context of ISMS
•   Setting the business goals and tracking whether they have been achieved - the
       same mechanism is laid down in both standards, so management will be used to
       such systematic planning

Therefore, if you have already implemented ISO 9001, you will have an easier job
implementing ISO 27001 (and vice versa) - you could save up to 30% of time. Further,
you will have cheaper certification audits since certification bodies are offering the so
called "integrated audits", which means they will do both ISO 9001 and ISO 27001 in the
same audit, charging you a smaller fee compared to separated audits.

If your QMS is functioning well, you will find your ISMS project developing rather
smoothly - management will have better understanding of potential business benefits,
while all organizational units will be accustomed to the necessity of defining precise
procedures, responsibilities and documentation.

Having a QMS indeed provides very good foundation for information security - if you
already have ISO 9001, do give a serious thought to ISO 27001.


If you want to download over free 50 ebook for iso 9001 standard, you can visit:

http://iso9001ebooks.info

Best regards

More Related Content

Viewers also liked

ViM People - Leadership
ViM People - LeadershipViM People - Leadership
ViM People - Leadership
ViMPeople
 
O corpo fala!
O corpo fala!O corpo fala!
O corpo fala!
Marinês Zanella
 
Mery biydaalt
Mery biydaaltMery biydaalt
Mery biydaaltturoo
 
Em que Família eu vou nascer?
Em que Família eu vou nascer?Em que Família eu vou nascer?
Em que Família eu vou nascer?
Rafaella Machado
 
Convenio CCPEB - Sanitas Inprecop Bolívar
Convenio CCPEB - Sanitas Inprecop BolívarConvenio CCPEB - Sanitas Inprecop Bolívar
Convenio CCPEB - Sanitas Inprecop Bolívar
Algoritmo de Venezuela C.A.
 
Split Diocletian palace
Split Diocletian palaceSplit Diocletian palace
Split Diocletian palace
amsth
 
Marketing assignment no 2
Marketing assignment no 2Marketing assignment no 2
Marketing assignment no 2
Phạm Hằng
 
E accomplishment and failure
E accomplishment and failureE accomplishment and failure
E accomplishment and failure
yangmezi
 
каталог
каталогкаталог
каталогturoo
 
Truyen xe lu va xe ca 2436th
Truyen xe lu va xe ca 2436thTruyen xe lu va xe ca 2436th
Truyen xe lu va xe ca 2436thPhượng Đào
 
He for she
He for sheHe for she
Survey
SurveySurvey
Symposium App Development-Scovil
Symposium App Development-ScovilSymposium App Development-Scovil
Symposium App Development-Scovil
Randy Scovil
 
Mery biydaalt
Mery biydaaltMery biydaalt
Mery biydaaltturoo
 
Vacature omni card r&d:ict manager
Vacature omni card r&d:ict managerVacature omni card r&d:ict manager
Vacature omni card r&d:ict manager
Marko Kramer
 
Taking Splunk to the Next Level - Architecture Breakout Session
Taking Splunk to the Next Level - Architecture Breakout SessionTaking Splunk to the Next Level - Architecture Breakout Session
Taking Splunk to the Next Level - Architecture Breakout Session
Splunk
 

Viewers also liked (16)

ViM People - Leadership
ViM People - LeadershipViM People - Leadership
ViM People - Leadership
 
O corpo fala!
O corpo fala!O corpo fala!
O corpo fala!
 
Mery biydaalt
Mery biydaaltMery biydaalt
Mery biydaalt
 
Em que Família eu vou nascer?
Em que Família eu vou nascer?Em que Família eu vou nascer?
Em que Família eu vou nascer?
 
Convenio CCPEB - Sanitas Inprecop Bolívar
Convenio CCPEB - Sanitas Inprecop BolívarConvenio CCPEB - Sanitas Inprecop Bolívar
Convenio CCPEB - Sanitas Inprecop Bolívar
 
Split Diocletian palace
Split Diocletian palaceSplit Diocletian palace
Split Diocletian palace
 
Marketing assignment no 2
Marketing assignment no 2Marketing assignment no 2
Marketing assignment no 2
 
E accomplishment and failure
E accomplishment and failureE accomplishment and failure
E accomplishment and failure
 
каталог
каталогкаталог
каталог
 
Truyen xe lu va xe ca 2436th
Truyen xe lu va xe ca 2436thTruyen xe lu va xe ca 2436th
Truyen xe lu va xe ca 2436th
 
He for she
He for sheHe for she
He for she
 
Survey
SurveySurvey
Survey
 
Symposium App Development-Scovil
Symposium App Development-ScovilSymposium App Development-Scovil
Symposium App Development-Scovil
 
Mery biydaalt
Mery biydaaltMery biydaalt
Mery biydaalt
 
Vacature omni card r&d:ict manager
Vacature omni card r&d:ict managerVacature omni card r&d:ict manager
Vacature omni card r&d:ict manager
 
Taking Splunk to the Next Level - Architecture Breakout Session
Taking Splunk to the Next Level - Architecture Breakout SessionTaking Splunk to the Next Level - Architecture Breakout Session
Taking Splunk to the Next Level - Architecture Breakout Session
 

Recently uploaded

GKohler - Retail Scavenger Hunt Presentation
GKohler - Retail Scavenger Hunt PresentationGKohler - Retail Scavenger Hunt Presentation
GKohler - Retail Scavenger Hunt Presentation
GraceKohler1
 
Satta Matka Dpboss Kalyan Matka Results Kalyan Chart
Satta Matka Dpboss Kalyan Matka Results Kalyan ChartSatta Matka Dpboss Kalyan Matka Results Kalyan Chart
Satta Matka Dpboss Kalyan Matka Results Kalyan Chart
Satta Matka Dpboss Kalyan Matka Results
 
Enhancing Adoption of AI in Agri-food: Introduction
Enhancing Adoption of AI in Agri-food: IntroductionEnhancing Adoption of AI in Agri-food: Introduction
Enhancing Adoption of AI in Agri-food: Introduction
Cor Verdouw
 
Kalyan chart 6366249026 India satta Matta Matka 143 jodi fix
Kalyan chart 6366249026 India satta Matta Matka 143 jodi fixKalyan chart 6366249026 India satta Matta Matka 143 jodi fix
Kalyan chart 6366249026 India satta Matta Matka 143 jodi fix
satta Matta matka 143 Kalyan chart jodi 6366249026
 
Satta Matka Dpboss Kalyan Matka Results Kalyan Chart
Satta Matka Dpboss Kalyan Matka Results Kalyan ChartSatta Matka Dpboss Kalyan Matka Results Kalyan Chart
Satta Matka Dpboss Kalyan Matka Results Kalyan Chart
Satta Matka Dpboss Kalyan Matka Results
 
Best Competitive Marble Pricing in Dubai - ☎ 9928909666
Best Competitive Marble Pricing in Dubai - ☎ 9928909666Best Competitive Marble Pricing in Dubai - ☎ 9928909666
Best Competitive Marble Pricing in Dubai - ☎ 9928909666
Stone Art Hub
 
Pitch Deck Teardown: Kinnect's $250k Angel deck
Pitch Deck Teardown: Kinnect's $250k Angel deckPitch Deck Teardown: Kinnect's $250k Angel deck
Pitch Deck Teardown: Kinnect's $250k Angel deck
HajeJanKamps
 
AI Transformation Playbook: Thinking AI-First for Your Business
AI Transformation Playbook: Thinking AI-First for Your BusinessAI Transformation Playbook: Thinking AI-First for Your Business
AI Transformation Playbook: Thinking AI-First for Your Business
Arijit Dutta
 
1 Circular 003_2023 ISO 27001_2022 Transition Arrangments v3.pdf
1 Circular 003_2023 ISO 27001_2022 Transition Arrangments v3.pdf1 Circular 003_2023 ISO 27001_2022 Transition Arrangments v3.pdf
1 Circular 003_2023 ISO 27001_2022 Transition Arrangments v3.pdf
ISONIKELtd
 
Prescriptive analytics BA4206 Anna University PPT
Prescriptive analytics BA4206 Anna University PPTPrescriptive analytics BA4206 Anna University PPT
Prescriptive analytics BA4206 Anna University PPT
Freelance
 
Pro Tips for Effortless Contract Management
Pro Tips for Effortless Contract ManagementPro Tips for Effortless Contract Management
Pro Tips for Effortless Contract Management
Eternity Paralegal Services
 
Satta Matka Dpboss Kalyan Matka Results Kalyan Chart
Satta Matka Dpboss Kalyan Matka Results Kalyan ChartSatta Matka Dpboss Kalyan Matka Results Kalyan Chart
Satta Matka Dpboss Kalyan Matka Results Kalyan Chart
Satta Matka Dpboss Kalyan Matka Results
 
Dpboss Matka Guessing Satta Matta Matka Kalyan panel Chart Indian Matka Dpbos...
Dpboss Matka Guessing Satta Matta Matka Kalyan panel Chart Indian Matka Dpbos...Dpboss Matka Guessing Satta Matta Matka Kalyan panel Chart Indian Matka Dpbos...
Dpboss Matka Guessing Satta Matta Matka Kalyan panel Chart Indian Matka Dpbos...
➒➌➎➏➑➐➋➑➐➐Dpboss Matka Guessing Satta Matka Kalyan Chart Indian Matka
 
Satta Matka Dpboss Kalyan Matka Results Kalyan Chart
Satta Matka Dpboss Kalyan Matka Results Kalyan ChartSatta Matka Dpboss Kalyan Matka Results Kalyan Chart
Satta Matka Dpboss Kalyan Matka Results Kalyan Chart
Satta Matka Dpboss Kalyan Matka Results
 
Unlocking WhatsApp Marketing with HubSpot: Integrating Messaging into Your Ma...
Unlocking WhatsApp Marketing with HubSpot: Integrating Messaging into Your Ma...Unlocking WhatsApp Marketing with HubSpot: Integrating Messaging into Your Ma...
Unlocking WhatsApp Marketing with HubSpot: Integrating Messaging into Your Ma...
Niswey
 
Kirill Klip GEM Royalty TNR Gold Copper Presentation
Kirill Klip GEM Royalty TNR Gold Copper PresentationKirill Klip GEM Royalty TNR Gold Copper Presentation
Kirill Klip GEM Royalty TNR Gold Copper Presentation
Kirill Klip
 
欧洲杯赌球-欧洲杯赌球买球官方官网-欧洲杯赌球比赛投注官网|【​网址​🎉ac55.net🎉​】
欧洲杯赌球-欧洲杯赌球买球官方官网-欧洲杯赌球比赛投注官网|【​网址​🎉ac55.net🎉​】欧洲杯赌球-欧洲杯赌球买球官方官网-欧洲杯赌球比赛投注官网|【​网址​🎉ac55.net🎉​】
欧洲杯赌球-欧洲杯赌球买球官方官网-欧洲杯赌球比赛投注官网|【​网址​🎉ac55.net🎉​】
valvereliz227
 
2024.06 CPMN Cambridge - Beyond Now-Next-Later.pdf
2024.06 CPMN Cambridge - Beyond Now-Next-Later.pdf2024.06 CPMN Cambridge - Beyond Now-Next-Later.pdf
2024.06 CPMN Cambridge - Beyond Now-Next-Later.pdf
Cambridge Product Management Network
 
Call 8867766396 Dpboss Matka Guessing Satta Matta Matka Kalyan Chart Indian M...
Call 8867766396 Dpboss Matka Guessing Satta Matta Matka Kalyan Chart Indian M...Call 8867766396 Dpboss Matka Guessing Satta Matta Matka Kalyan Chart Indian M...
Call 8867766396 Dpboss Matka Guessing Satta Matta Matka Kalyan Chart Indian M...
dpbossdpboss69
 
Satta Matka Dpboss Kalyan Matka Results Kalyan Chart
Satta Matka Dpboss Kalyan Matka Results Kalyan ChartSatta Matka Dpboss Kalyan Matka Results Kalyan Chart
Satta Matka Dpboss Kalyan Matka Results Kalyan Chart
Satta Matka Dpboss Kalyan Matka Results
 

Recently uploaded (20)

GKohler - Retail Scavenger Hunt Presentation
GKohler - Retail Scavenger Hunt PresentationGKohler - Retail Scavenger Hunt Presentation
GKohler - Retail Scavenger Hunt Presentation
 
Satta Matka Dpboss Kalyan Matka Results Kalyan Chart
Satta Matka Dpboss Kalyan Matka Results Kalyan ChartSatta Matka Dpboss Kalyan Matka Results Kalyan Chart
Satta Matka Dpboss Kalyan Matka Results Kalyan Chart
 
Enhancing Adoption of AI in Agri-food: Introduction
Enhancing Adoption of AI in Agri-food: IntroductionEnhancing Adoption of AI in Agri-food: Introduction
Enhancing Adoption of AI in Agri-food: Introduction
 
Kalyan chart 6366249026 India satta Matta Matka 143 jodi fix
Kalyan chart 6366249026 India satta Matta Matka 143 jodi fixKalyan chart 6366249026 India satta Matta Matka 143 jodi fix
Kalyan chart 6366249026 India satta Matta Matka 143 jodi fix
 
Satta Matka Dpboss Kalyan Matka Results Kalyan Chart
Satta Matka Dpboss Kalyan Matka Results Kalyan ChartSatta Matka Dpboss Kalyan Matka Results Kalyan Chart
Satta Matka Dpboss Kalyan Matka Results Kalyan Chart
 
Best Competitive Marble Pricing in Dubai - ☎ 9928909666
Best Competitive Marble Pricing in Dubai - ☎ 9928909666Best Competitive Marble Pricing in Dubai - ☎ 9928909666
Best Competitive Marble Pricing in Dubai - ☎ 9928909666
 
Pitch Deck Teardown: Kinnect's $250k Angel deck
Pitch Deck Teardown: Kinnect's $250k Angel deckPitch Deck Teardown: Kinnect's $250k Angel deck
Pitch Deck Teardown: Kinnect's $250k Angel deck
 
AI Transformation Playbook: Thinking AI-First for Your Business
AI Transformation Playbook: Thinking AI-First for Your BusinessAI Transformation Playbook: Thinking AI-First for Your Business
AI Transformation Playbook: Thinking AI-First for Your Business
 
1 Circular 003_2023 ISO 27001_2022 Transition Arrangments v3.pdf
1 Circular 003_2023 ISO 27001_2022 Transition Arrangments v3.pdf1 Circular 003_2023 ISO 27001_2022 Transition Arrangments v3.pdf
1 Circular 003_2023 ISO 27001_2022 Transition Arrangments v3.pdf
 
Prescriptive analytics BA4206 Anna University PPT
Prescriptive analytics BA4206 Anna University PPTPrescriptive analytics BA4206 Anna University PPT
Prescriptive analytics BA4206 Anna University PPT
 
Pro Tips for Effortless Contract Management
Pro Tips for Effortless Contract ManagementPro Tips for Effortless Contract Management
Pro Tips for Effortless Contract Management
 
Satta Matka Dpboss Kalyan Matka Results Kalyan Chart
Satta Matka Dpboss Kalyan Matka Results Kalyan ChartSatta Matka Dpboss Kalyan Matka Results Kalyan Chart
Satta Matka Dpboss Kalyan Matka Results Kalyan Chart
 
Dpboss Matka Guessing Satta Matta Matka Kalyan panel Chart Indian Matka Dpbos...
Dpboss Matka Guessing Satta Matta Matka Kalyan panel Chart Indian Matka Dpbos...Dpboss Matka Guessing Satta Matta Matka Kalyan panel Chart Indian Matka Dpbos...
Dpboss Matka Guessing Satta Matta Matka Kalyan panel Chart Indian Matka Dpbos...
 
Satta Matka Dpboss Kalyan Matka Results Kalyan Chart
Satta Matka Dpboss Kalyan Matka Results Kalyan ChartSatta Matka Dpboss Kalyan Matka Results Kalyan Chart
Satta Matka Dpboss Kalyan Matka Results Kalyan Chart
 
Unlocking WhatsApp Marketing with HubSpot: Integrating Messaging into Your Ma...
Unlocking WhatsApp Marketing with HubSpot: Integrating Messaging into Your Ma...Unlocking WhatsApp Marketing with HubSpot: Integrating Messaging into Your Ma...
Unlocking WhatsApp Marketing with HubSpot: Integrating Messaging into Your Ma...
 
Kirill Klip GEM Royalty TNR Gold Copper Presentation
Kirill Klip GEM Royalty TNR Gold Copper PresentationKirill Klip GEM Royalty TNR Gold Copper Presentation
Kirill Klip GEM Royalty TNR Gold Copper Presentation
 
欧洲杯赌球-欧洲杯赌球买球官方官网-欧洲杯赌球比赛投注官网|【​网址​🎉ac55.net🎉​】
欧洲杯赌球-欧洲杯赌球买球官方官网-欧洲杯赌球比赛投注官网|【​网址​🎉ac55.net🎉​】欧洲杯赌球-欧洲杯赌球买球官方官网-欧洲杯赌球比赛投注官网|【​网址​🎉ac55.net🎉​】
欧洲杯赌球-欧洲杯赌球买球官方官网-欧洲杯赌球比赛投注官网|【​网址​🎉ac55.net🎉​】
 
2024.06 CPMN Cambridge - Beyond Now-Next-Later.pdf
2024.06 CPMN Cambridge - Beyond Now-Next-Later.pdf2024.06 CPMN Cambridge - Beyond Now-Next-Later.pdf
2024.06 CPMN Cambridge - Beyond Now-Next-Later.pdf
 
Call 8867766396 Dpboss Matka Guessing Satta Matta Matka Kalyan Chart Indian M...
Call 8867766396 Dpboss Matka Guessing Satta Matta Matka Kalyan Chart Indian M...Call 8867766396 Dpboss Matka Guessing Satta Matta Matka Kalyan Chart Indian M...
Call 8867766396 Dpboss Matka Guessing Satta Matta Matka Kalyan Chart Indian M...
 
Satta Matka Dpboss Kalyan Matka Results Kalyan Chart
Satta Matka Dpboss Kalyan Matka Results Kalyan ChartSatta Matka Dpboss Kalyan Matka Results Kalyan Chart
Satta Matka Dpboss Kalyan Matka Results Kalyan Chart
 

Iso 9001 management system

  • 1. Iso 9001 management system You have already implemented ISO 9001? You have heard that ISO 27001 might be a good idea? But how can something that has to do with quality help you implement information security? It can, more than you may think. ISO 9001 specifies how the quality management systems (QMS) must look like, while ISO/IEC 27001 specifies the information security management systems (ISMS). Therefore, the "management systems" part is the same - so what is it actually? The philosophy of management systems has grown from the theory developed by W. Edwards Deming during the second half of 20th century, and is based on the Plan-Do- Check-Act cycle. Basically, this cycle consists of the following: in the Plan phase you have to plan what you want to achieve with the management system, in the Do phase you implement it, in the Check phase you constantly monitor whether you have achieved what you planned, and in the Act phase you make improvements, i.e. fill the gap between what you have planned and what you have achieved. Although this cycle was invented with quality management in mind, it was established as a foundation for all other management systems - information security (ISO/IEC 27001), environment (ISO 14001), business continuity (BS 25999-2), etc. It means that some of the elements you have implemented for the quality management system according to ISO 9001 you can use for the information security management system as well - here is the list: • Document management - the procedure used for document management in QMS can be used for the same purpose in ISMS, with only minor adjustments • Internal audit - the same procedure can be used for both QMS and ISMS, although the internal audit itself would usually be done by different people since it is not very likely that one person would have deep enough knowledge of both information security and quality • Corrective and preventive actions - the procedure used for QMS can be used for the same purpose in ISMS, although it is likely that different persons will be solving issues related to QMS or ISMS • Human resources management - the same cycle of HR planning, training and evaluation is used for both management systems; naturally, the difference is in the profile of needed skills and knowledge • Management review - the principles for management review are the same for both management systems; although it would not be recommendable to perform both reviews in parallel, management will already be accustomed to making decisions in QMS, so they will have better understanding of how to make decisions in the context of ISMS
  • 2. Setting the business goals and tracking whether they have been achieved - the same mechanism is laid down in both standards, so management will be used to such systematic planning Therefore, if you have already implemented ISO 9001, you will have an easier job implementing ISO 27001 (and vice versa) - you could save up to 30% of time. Further, you will have cheaper certification audits since certification bodies are offering the so called "integrated audits", which means they will do both ISO 9001 and ISO 27001 in the same audit, charging you a smaller fee compared to separated audits. If your QMS is functioning well, you will find your ISMS project developing rather smoothly - management will have better understanding of potential business benefits, while all organizational units will be accustomed to the necessity of defining precise procedures, responsibilities and documentation. Having a QMS indeed provides very good foundation for information security - if you already have ISO 9001, do give a serious thought to ISO 27001. If you want to download over free 50 ebook for iso 9001 standard, you can visit: http://iso9001ebooks.info Best regards