You are on page 1of 2

nabiha alhallak <gnabihaalhallak@gmail.

com>

iso 27001 standard


Nathar, Mohamed <Mohamed.Nathar@tuvsud.com> Sun, Jun 28, 2020 at 3:16 PM
To: "eng.ataya@gmail.com" <eng.ataya@gmail.com>, "gnabihaalhallak@gmail.com" <gnabihaalhallak@gmail.com>,
"moazgh@hotmail.com" <moazgh@hotmail.com>, HANI ALI <hani_23591@hotmail.com>, "mohammadatt998@yahoo.com"
<mohammadatt998@yahoo.com>, "oulahatahet@gmail.com" <oulahatahet@gmail.com>, "Deeb, Muhannad Taher"
<muhannad.deeb@tuvsud.com>

Organizational Individuals
Date Time Audit criteria Process/procedure/ element Auditor
unit/place Involved

08:00- Virtual Meeting All Stake


Opening Meeting
08:30 Room Holders
Management Principles
08:30- Virtual Meeting Internal & External Issues, Interested Parties, SMS Policy, Roles,
10:30 Room Risk management (assessment & treatment), Objectives4.1, 4.2,
4.3, 4.4, 5.1, 5.2, 5.3, 6.1, 6.2, 8.1,8.2,8.3 A5.1, A6.1
Management System -Part1
10:30- Virtual Meeting IS performance, Internal audit, Management review meetings,
12:30 Room Corrective Actions, Continual Improvement, legal requirements
9.1,9.2, 9.3,10.1 10.2, A18.1, A18.2
12:30-
Lunch Break
13:00
DAY1
Management System – Part2
:26.06.2020
7.1, 7.2, 7.3, 7.4, 7.5, A71, A7.2, A7.3
13:00- Virtual Meeting
Resource Mgmt., Training & Awareness, competence and
14:30 Room
awareness, management responsibility, Control of documents,
records, HR security MN
Access Controls
Access Controls, Access Control Policy, Access to Networks and
Network Services, Network Access to QIC's network User Registration &
14:30- Virtual Meeting
De-registration, User Access Provisioning, Management of Privileged
16:30 Room
Access Rights, Review of Access Rights, Management of Password
compliance
A.9.1.1, A.9.1.2, A.9.1.2.1, A.9.2.1, A.9.2.2, A.9.2.3, A.9.2.5, A.9.2.4
Applications (DevOps)Team
Virtual Meeting
DAY2 08:00- Application Security Design A14.1.1, A14.1.2, A14.1.3
:27.06.2020 10:00 Room Application security Development & Application Management A14.2.1-
A14.2.9, Test Data (A14.3.1)
IT Operational Security
A.12.1.1 Documented Operating Procedures, A.12.1.2 Change
Management,
10:00- Virtual Meeting A.12.1.3 Capacity Management, A.12.1.4 Test and Development
systems Environments, A.12.2.1.1 PCs and Servers (Antivirus), A.12.3.1
12:00 Room (Data snapshots & recovery of a server from snapshots), A.12.4.1 Event
Logging (Security events,
File audit (when appropriate), A.12.4.4 Clock Synchronization,
A.12.6(penetration testing and audits with system administrators) MN
12:00-
Lunch Break
12:30
12:30- Virtual Meeting Supplier Security
A15.1.1-A15.1.3 Review of SLAs and NDAs, A15.2.1(Supplier Audits),
13:30 Room A15.2.2 Performance Review.
Business Continuity Management
13:30- Virtual Meeting
Requirements, plans, monitoring, testing, security aspects, A17.1, A17.2
15:00 Room
Reporting & Management of incidents A16.1
15:00- Virtual Meeting
Auditor time
15:30 Room
15:30- Audit Debrief
16:00 Virtual Meeting All ISMS
Room members
concerned
All ISMS
16:00- Virtual Meeting
members Closing Meeting
16:30 Room
concerned

From: Nathar, Mohamed


Sent: Saturday, June 27, 2020 9:32 AM
To: eng.ataya@gmail.com <eng.ataya@gmail.com>; gnabihaalhallak@gmail.com <gnabihaalhallak@gmail.com>;
moazgh@hotmail.com <moazgh@hotmail.com>; HANI ALI <hani_23591@hotmail.com>;
mohammadatt998@yahoo.com <mohammadatt998@yahoo.com>; oulahatahet@gmail.com
<oulahatahet@gmail.com>; Deeb, Muhannad Taher <muhannad.deeb@tuvsud.com>
Subject: iso 27001 standard

[Quoted text hidden]

You might also like