- Innovation, regulation and research on tap at RSA 2008
- Researchers uncover 100 VoIP vulnerabilities
- Badware not pushing users offline
- Web attacks won't stop
- Most sites still hack-able
- Tips on employee monitoring
- Research: IT security maturing, but misaligned
- Clarke sharply criticizes Bush cyber-security plans
- Conference seeks to bridge risk, research
- Core finds new CEO
May 25, 2006 | Comments: (0)
A conversation on ISO 27001 and what it could mean to you
I took a call recently with Ken Peterson, President and CEO of Churchill & Harriman, to discuss his experiences helping customers implement ISO 27001.
Ken founded Churchill & Harriman in 1982, and the company helps clients develop and implement controls and procedures that identify, value, and mitigate business risk.
Listen to the interview with Churchill & Harriman now.
LISTEN!
According to Churchill & Harriman, here are some of the benefits realized by ISO 27001:2005 certified organizations:
- Holistic, risked-based approach to security, privacy and compliance
- Provides a common framework for addressing legislative, regulatory and contractual compliance - Corporate Governance
- Demonstrates credibility, creates trust, improves satisfaction and confidence of stakeholders, partners, citizens and customers
- Demonstrates information security capability according to internationally accepted best practices
- Creates market differentiation due to prestige, image and external goodwill
- Reduces liability risk; demonstrates due diligence; lowers rates on cyber risk insurance premiums
- Demonstrates Certifiable, Proven, Defensible, Cost-Effective, Recognition of Best Practices
- Demonstrates due diligence by maintaining certification through semi-annual 3rd Party surveillance visits
- Reduced cost and business disruption from client risk assessments
- Assures policies & procedures are in accordance with internationally recognized criteria, structure and methodology
- Provides your organization with a continuous protection framework that allows for a flexible, effective, and defensible approach to security and privacy
- Certified Once ... Accepted Globally
Posted by Victor R. Garza on May 25, 2006 07:28 AM
RATE THIS ARTICLE:
-

- COMMENTS
I agree. These are the main reasons to convince a Manager for implementing an ISO 27001 ISMS. When you are talking about implementing this type of system the first question you must to answer as a consultant is about the benefits that the company will take after the job. These are good reasons as we said.
Congratulations.
Jose Manuel Fernandez
Blog ISO 27001
| ZERO DAY PODCAST |
| Listen to the latest podcast: |
MP3
•
•
•
Archive
•
|
TOP STORIES
ADDITIONAL RESOURCES

- Best Practices for Successful SOA Governance
- Application Grid: Oracle's Vision for Next-Generation Application Servers and Infrastructure
- Do you have the power to resolve technical issues with one call?

- Sun Microsystems: The Green Tide Is Coming.
- More Effective Antivirus Protection
- Stop Spam, Phishing and Viruses






![[VoiceIndigo Mobilize - Listen to podcasts on your mobile phone]](http://www.voiceindigo.com/ht/images/mobilize_logo_sm.gif)
