KRUCEK>Expert Articles

Expert Articles

14. 4. 2021

The relationship between cybersecurity and information security

  • Cybersecurity
  • ISMS
  • ISO 27001

Information security and cybersecurity are closely related and overlap but have different goals. Information security addresses the confidentiality, integrity and availability of information, while cybersecurity is primarily concerned with protecting the lives, health and property of people and organisations, society and nations as a whole.

More
29. 3. 2021

Governance of information security

  • Governance
  • ISMS
  • ISO 27001

In smaller organisations, the accurate setup of direction and control of information security is relatively simple, especially when the scope of ISMS covers the entire organisation. For larger, geographically dispersed or more complex organisations, the situation is more complicated. In these cases, it is common that the ISMS covers only a part of the entity (organisation…

More
26. 8. 2020

Business Impact Analysis based on ISO/TS 22317

  • BCMS
  • BIA
  • ISO 22317

Business Impact Analysis (BIA) is the first step in a business continuity program. For ensuring business continuity, it is essential to know and understand the adverse effects that disruption of the supply of products and services would have on the organisation and stakeholders. The impact of disruptions usually increases over time – it may be negligible…

More
8. 8. 2020

Certification of Privacy Information Management Systems (PIMS) using ISO/IEC TS 27006-2

  • Audit
  • ISM 27001
  • ISMS
  • ISO 27701
  • PIMS

The new International Standard ISO/IEC TS 27006-2, which specifies requirements and provides guidance to bodies auditing and certifying a personal data management system (PIMS) according to ISO/IEC 27701 in combination with ISO/IEC 27001, should be published shortly. Therefore, it is becoming increasingly clear what requirements certification bodies will have to comply with and how these requirements…

More
25. 4. 2020

Risk management based on ISO 31000

All organisations are exposed to internal and external influences that create uncertainty as to whether they will be able to achieve their goals. Risk management helps organisations identify potential threats and opportunities, identify appropriate strategies, and make informed decisions. Risk management is an essential part of the governance and management of an organisation at all…

More