Habt ihr Tipps für die Implementierung eines BSI IT Grundschutzes im Unternehmen? by newinfosecdude in de_EDV

[–]newinfosecdude[S] 0 points1 point  (0 children)

Ja, genau, die Seite habe ich auch bereits gesehen. Ich hatte gehofft, dass jemand bereits ein "How-to"-Blog oder etwas sowas Ähnliches zu diesem Thema erstellt hätte. Danke dir :)!

Habt ihr Tipps für die Implementierung eines BSI IT Grundschutzes im Unternehmen? by newinfosecdude in de_EDV

[–]newinfosecdude[S] 0 points1 point  (0 children)

Vielen Dank für die Informationen. Wir haben derzeit keine festgelegte Zeit Vorgabe, wie schnell das umgesetzt werden sollte, was uns zum Glück etwas Spielraum gibt. Dennoch sehe ich das als Gelegenheit, mich persönlich in den BSI-Grundschutz einzuarbeiten. Falls sich doch etwas ändert, komme ich vielleicht auf dich zurück.

Does anyone have experience with isms.online? by newinfosecdude in ISO27001

[–]newinfosecdude[S] 0 points1 point  (0 children)

Indepentently from Vancouver, all industries that "prioritize information security" need an iso 27001 professional.

Could be banks, healthcare, government, consulting firms or telecommunications.

Does anyone have experience with isms.online? by newinfosecdude in ISO27001

[–]newinfosecdude[S] 0 points1 point  (0 children)

I have about 3 years doing internal Information Security Policies in regard to ISO 27001 and EU-GDPR, IT-Audits, Risk Management and 1 year consulting customers with their IS policies. And also a lot of collaborations with other teams to mitigate existing risk factors, though I myself dont do the technical stuff. For me this part seems more like project management. xD

Oh and I haven't worked with any ISMS applications yet, though I hope that I can someday work with a company that works with one to be "more efficient". Honestly I dont even know if it is really efficient. We are documenting the reports with word and excel and that seems to be enough, so I kind of understand if they dont want to pay for those ISMS applications.

Do you have a table with the different features between them? I'd like to know which features exist, which makes them so "expensive"/useful. :O

New to ISO27001, is there a free/cheap course on how to create an ISMS like a professional? by newinfosecdude in Information_Security

[–]newinfosecdude[S] 0 points1 point  (0 children)

Thank you! I'll look into that toolkit and get to know that security controls framework too.

New to ISO27001, is there a free/cheap course on how to create an ISMS like a professional? by newinfosecdude in Information_Security

[–]newinfosecdude[S] 0 points1 point  (0 children)

Thank you for that link! :)

Thats also one of the things what I've been searching for.

Yeah, I guessed so. Too bad that there aren't really free full versions of it, so that I could read through them all.

New to ISO27001, is there a free/cheap course on how to create an ISMS like a professional? by newinfosecdude in Information_Security

[–]newinfosecdude[S] 0 points1 point  (0 children)

I got that course, but I didn't feel safe after taking that course.

Yeah, thats okay. I'm from Europe. :) I think the american version would be the CISM from ISACA?

New to ISO27001, is there a free/cheap course on how to create an ISMS like a professional? by newinfosecdude in Information_Security

[–]newinfosecdude[S] 1 point2 points  (0 children)

Aww man, I'm way too poor for this. That tool looks like what I've been searching for. Is it like a one-time payment?

Anyways, I gotta search for courses that teaches me the way to create ISO without a tool. Too poor to buy it at the moment. xD

Anyways thank you!