Resources, Competence, Awareness & Communication for ISO 27001 7.1 – 7.4

Book a demo

futuristic,architecture,cityscape,view,with,modern,building,skyscrapers

ISO 27001 Section 7.1 – Resources

A requirement of ISO 27001 is to provide an adequate level of resources so that you can maintain and continually improve your information security management system (ISMS).

ISO 27001 Section 7.2 – Competence

The aim here is to demonstrate an adequate and proportionate level of information security knowledge and competence. These can be internal or external resources, for example, if you had an information security advisor coming into the company for a short period of time.

Competence of the individuals involved with the ISMS should be assessed, the organisation’s requirements identified and agreed what is adequate competence. Then you should identify how to fill any gaps.

The organisation should commit to providing training, education or mentoring to any individual tasked with maintaining information security.

multiracial,young,creative,people,in,modern,office.,successful,hipster,team

ISO 27001 Section 7.3 – Awareness

The person responsible for managing the information security management system should be aware of everything concerned with the policies and controls held within it.

ISO 27001 Section 7.4 – Communication

The organisation should have a plan in place for communicating, internally and externally, information about the information security management system – this could include the benefits of using an ISMS. A formal process of communication should be agreed and documented.

The process could include the following:

  • what will be communicated;
  • when it will be communicated;
  • with whom;
  • who shall own the communication; and
  • the process
close,up,on,hands,of,diverce,group,of,students,sitting
100% ISO 27001 success

Your simple, practical, time-saving path to first-time ISO 27001 compliance or certification

Book your demo
Assured Results Method

How to easily demonstrate 7.1 – 7.4 Resources

The ISMS.online platform makes it easy for you to determine and provide the necessary resources, competencies, awareness and communication capabilities for establishing and implementing an ISMS.

Adopt, adapt and add

Our pre-configured ISMS provides a single policy that covers requirements 7.1, 7.2, 7.3 and 7.4. The AAA content references other policies and controls that evidence resource management, as well as mechanisms and features within ISMS.online that make it easy to address this requirement.

The AAA framework for 7.1-7.4 can be adapted to reflect any additional training, coaching or consulting that your organisation has invested in, including the Virtual Coach programme.

You are provided with ready-made controls and references to subordinate policies that can be adopted, adapted, or added to out of the box.

This means that you have ready-made simple to follow foundation for ISO 27001 compliance or certification giving you a 77% head start.

Adopt, adapt and add
Trusted by companies everywhere
  • Simple and easy to use
  • Designed for ISO 27001 success
  • Saves you time and money
Book your demo
img

The proven path to ISO 27001 success

Built with everything you need to succeed with ease, and ready to use straight out of the box – no training required!
Policies

Perfect Policies & Controls

Easily collaborate, create and show you are on top of your documentation at all times

Find out more
Risk-Management

Simple Risk Management

Effortlessly address threats & opportunities and dynamically report on performance

Find out more
Reporting

Measurement & Automated Reporting

Make better decisions and show you are in control with dashboards, KPIs and related reporting

Find out more
Audits

Audits, Actions & Reviews

Make light work of corrective actions, improvements, audits and management reviews

Find out more
Linking

Mapping & Linking Work

Shine a light on critical relationships and elegantly link areas such as assets, risks, controls and suppliers

Find out more
Assets

Easy Asset Management

Select assets from the Asset Bank and create your Asset Inventory with ease

Find out more
Seamless-Integration

Fast, Seamless Integration

Out of the box integrations with your other key business systems to simplify your compliance

Find out more
Standards-Regulations

Other Standards & Regulations

Neatly add in other areas of compliance affecting your organisation to achieve even more

Find out more
Compliance

Staff Compliance Assurance

Engage staff, suppliers and others with dynamic end-to-end compliance at all times

Find out more
Supply-Chain

Supply Chain Management

Manage due diligence, contracts, contacts and relationships over their lifecycle

Find out more
Interested-Parties

Interested Party Management

Visually map and manage interested parties to ensure their needs are clearly addressed

Find out more
Privacy

Strong Privacy & Security

Strong privacy by design and security controls to match your needs & expectations

Find out more
 

ISO 27001 requirements


ISO 27001 Annex A Controls


About ISO 27001


Achieve ISO 27001 first time

Explore ISMS.online's platform with a self-guided tour - Start Now