| |
Effectively manage your organization's risks and prepare for the audit of your ISMS using the modules available in this section.
|
|
Data Collection
|
| |
|
Identify your company's level of compliance with ISO 17799 by answering the ISO 17799 compliance diagnostic's 127 questions. You can also answer any questionnaire previously defined by the project leader, such as COBIT, Sarbanes & Oxley, etc.
|
|
| Provide complementary information regarding any question |
| Attach supporting documents |
| Make your way through the questionnaire using the questionnaire navigation tools |
| Assign questions to users (users can view and answer only those questions they have been assigned) |
|
| |
|
| |
| |
| |
|
Processes Management
|
| |
Manage the organization's structures and processes for the current ISMS.
| Include multi-level structures |
| Link assets to one or more of the previously defined processes |
|
| Asset Inventory |
| |
|
Compile an inventory of the elements that are important to your organization.
| Upload the asset inventory using the CSV file template |
| Organize the assets by predefined categories or by COBIT categories. |
| Evaluate the assets according to the criteria that have been defined (confidentiality, integrity, availability, legal requirements, etc) |
| Identify the threats applicable to the assets, the probability of occurrence and the monetary impact. |
| Link the assets to the organization's processes |
| Identify the asset owners |
| Indicate each asset's replacement value |
|
| |
|
| |
| |
| |
|
Risk Mitigation
|
| |
|
Treat and control the risks related to each asset.
| Create multiple implementation scenarios (control selection) in order to calculate residual risk |
| View the current risk and the projected risk |
| Evaluate the cost of implementing a scenario |
| Choose which control(s) to implement, or decide to accept the current risk |
|
| |
 |
| |
| |
| |
| Audit Preparation |
| |
Validate your information security management framework before the external auditor arrives. Callio Secura 17799 includes an ISMS compliance diagnostic tool and allows you to create and modify the statement of applicability leading to BS 7799-2 certification. In addition, the software includes an assessment and audit grid for the internal auditor, information on how a typical audit proceeds and an audit grid for the external auditor.
|
| |
| |
| |
|
Follow to Tools
|
| |
| |
| |