Home Shopping Cart | Search  

  Login  
You have 0 item(s) in your Shopping Cart  
 
Search
 
 
  Browse By


  Services

Vulnerability Assessments
  • Internal Vulnerability
  • External Vulnerability
  • Risk Assessment

Operational Assessments
   • ISO-17799
   • CobiT
   • Asset Discovery

Regulatory Compliance
   • HIPAA
   • FISMA
   • HSPD-12
   • GLBA
   • SOX

Identity Management
   • IdentiPHI





 
Security Workplace ISO-17799 Assessment

ISO-17799 ASSESSMENT



Security Workplace designed the ISO 17799 assessment to provide an overview of the state of organizational and technical security. This engagement focuses on security (and overlapping privacy policies), procedures, physical access controls, technical access controls and internet/intranet controls. The assessment review provides management with an opinion of what areas the organization may need to focus resources on to reduce its current level of risk.

 ISO 17799 is an international standard that was established to provide guidelines and general best practices for initiating, implementing, maintaining, and improving information security management in an organization. The best practices/control objectives address the following areas:

  • Security Policy
  • Organization of Information Security
  • Asset Management
  • Human Resources Security
  • Physical and Environmental Security
  • Communications and Operations Management
  • Access Control
  • Information Systems Acquisition, Development and Maintenance
  • Information Security Incident Management
  • Business Continuity Management
  • Compliance


QuickStart Implementation

The ISO 17799 QuickStart ImplementationT is designed to provide a two-week fast path implementation of ISO 17799 controls in your organization. The goal of this service offering is to put the planning and framework in place to turn the auditing and remediation of ISO 17799 controls over to your team.

A senior advisor will work with your organization to define a project schedule and implementation team. Proprietary tools developed by KSG will be shared with team members to accelerate project delivery.

An orientation session will be held with your executive team to familiarize them with the ISO 17799 framework.

Your implementation team will be trained to audit control objectives to the ISO 17799 Audit Guidelines.

Security Workplace will install Methodware's Enterprise Risk Assessment (ERA) software to provide for the identification and control of business risks, including facilitating the recording, assessment, treatment, monitoring and reporting of risks across your organization.

Schedule

Week One

  • Define project plan
  • Executive training
  • Implementation team training
  • Installation of ERA software

Week Two

  • Audit interviews with domain subject matter experts
  • Control objective assessments and recommendations

Deliverables

The following deliverables are included with the ISO 17799 QuickStart Implementation:

  • Implementation Project Plan and Roadmap
  • One Two-Hour Executive Training Session
  • One Full-Day ISO 17799 Implementation Team Training Session
  • Single user license for Enterprise Risk Assessor
  • Control Objectives assessed and recommendations defined for two mutually agreed upon ISO 17799 domains
  • All data for the two domains entered into Enterprise Risk Assessor