|
|
Insurance Institution
We were commissioned to assist with the implementation of BS7799 within
the companies IT departments (Systems, Development, Helpdesk etc.). Our
role included the following tasks:
-
providing
the framework for future roll out of the standard to other areas;
-
providing
the following for each of the ten sections of the standard:
-
Risk
assessment
-
Identification of required resources
-
a review
of all their relevant policies (e.g. Corporate Security policy, Internet
usage etc.);
-
providing
a risk assessment for the department which included a written report;
-
reviewing
the implementation of BS7799 within the departments, once completed;
-
utilised as part of the internal audit team;
-
assist during the first year of certification periodic audits.
|
|
|
|
|