tÜv nord cert – certification of information management ... · defined by standard iso/iec...

2
Valuable information needs effective protection Information is a vital part of modern life; our society increasingly depends on it. This is why responsible handling of infor- mation is more important than ever. The aspects of confidentiality, availability and integrity are gaining significance: information is pre- cious, and loss or manipulation can lead to considerable damage and harm. To counteract these risks, it is ad- visable to install a comprehensive information security management system (ISMS), which also takes legal, regulatory and contractual rules and stipulations into account. The criteria for development, introduction, operation, monitoring and continual improvement of a documented ISMS are defined by standard ISO/IEC 27001. Certification by TÜV NORD CERT according to ISO/IEC 27001 offers confirmation that the requirements of the standard are effectively implemented – for efficient protection of valuable information. Target groups for certification The certification is intended for organisations and companies from all sectors – from manufacturing industry through wholesalers and retailers up to service providers and public utilities. In addition, TÜV NORD CERT offers certification according to ISO/IEC 20000-1 to internal or external IT service providers for highly-capable IT service management. Benefits of certification Companies and other organisations benefit from certification according to ISO/IEC 27001 in many ways: n Weaknesses in data handling are revealed n Employees are made aware of security aspects, and risk awareness also increases n Systematic handling of information increases security and risks are reduced to an acceptable level based on a risk analysis n Certification of the ISMS by a recognised certification body creates trust on the part of clients, partners and investors Prerequisites for certification Prerequisites for certification are the installation of a risk management system with identification, analysis, evaluation and handling of risks, and the issue of the scope of applicability. TÜV NORD CERT – Certification of information management systems to ISO/IEC 27001 TÜV NORD GROUP

Upload: others

Post on 17-Apr-2020

2 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: TÜV NORD CERT – Certification of information management ... · defined by standard ISO/IEC 27001. Certification by ... offers certification according to ISO/IEC 20000-1 to internal

Valuable information needs effective protection

Information is a vital part of modern life; our society increasingly depends on it. This is why responsible handling of infor-mation is more important than ever.The aspects of confidentiality, availability and integrity are gaining significance: information is pre-cious, and loss or manipulation can lead to considerable damage and harm.

To counteract these risks, it is ad-visable to install a comprehensive information security management system (ISMS), which also takes legal, regulatory and contractual rules and stipulations into account.

The criteria for development, introduction, operation, monitoring and continual improvement of a documented ISMS are defined by standard ISO/IEC 27001. Certification by TÜV NORD CERT according to ISO/IEC 27001 offers confirmation that the requirements of the standard are effectively implemented – for efficient protection of valuable information.

Target groups for certificationThe certification is intended for organisations and companies from all sectors – from manufacturing industry through wholesalers and retailers up to service providers and public utilities. In addition, TÜV NORD CERT offers certification according to ISO/IEC 20000-1 to internal or external IT service providers for highly-capable IT service management.

Benefits of certificationCompanies and other organisations benefit from certification according to ISO/IEC 27001 in many ways: n Weaknesses in data handling are revealed n Employees are made aware of security aspects, and risk awareness also increases n Systematic handling of information increases security and risks are reduced to an acceptable level based on a risk analysisn Certification of the ISMS by a recognised certification body creates trust on the part of clients, partners and investors

Prerequisites for certificationPrerequisites for certification are the installation of a risk management system with identification, analysis, evaluation and handling of risks, and the issue of the scope of applicability.

TÜV NORD CERT – Certification of information management systems to ISO/IEC 27001

TÜV NORD GROUP

Page 2: TÜV NORD CERT – Certification of information management ... · defined by standard ISO/IEC 27001. Certification by ... offers certification according to ISO/IEC 20000-1 to internal

Our know-how for your successTÜV NORD CERT is a well-established and reliable partner for inspection and certification services throughout the world. Our experts and auditors have extensive knowledge based on experience and are in general permanently employed by TÜV NORD. This guarantees independence and neutrality and also means that we can offer continuity in supporting our clients. The benefit to you is clear: our auditors accompany and support the development of your company and provide you with objective feedback.

The route to the certificate

24-0363-09/17

c Yes, I am interested in Certification of information management systems to ISO/IEC 27001. Please contact me.

Are you interested?Please send us your response by fax.We are looking forward to hearing from you.

Company

Ms./Mr.

Position

Street, No.

Postcode/Town

Phone

Telefax

E-mail

Sender (Please use block capitals)

TÜV NORD CERT GmbHTel. : +49 (0) 511 9986-1222Fax: +49 (0) 511 9986 [email protected]

You can find further information and our subsidiaries atwww.tuev-nord-cert.com

Stage 1 Audit (on-site readiness assessment): Determination of readiness for certification, review of management

system documentation, planning of certification audit (Stage 2)

Optional: Preliminary audit

Order for certification to TÜV NORD CERT

Offer from TÜV NORD CERT based on the information provided

Stage 2 Audit: Certification audit

Release of the certification process

Issuance of certificate, Validity: 3 years, annual surveillance audits, if necessary, special audits if client conditions or regulations change