You are on page 1of 1

ISO/IEC 27001:2013 Information security management systems

- Organizational roles, responsibilities and authorities-

Top management should ensure that responsibilities and authorities


relevant to information security are assigned and communicated to staff.

Nominate a person (structure) responsible for the ISMS:

- Ensure that the ISMS conforms to the requirements of ISO/IEC 27001;


- Report to top management about the performance of the ISMS

You might also like