Page 32 - BOSS Today Issue 1
P. 32

TECHNOLOGY





























                                                                                                                                              SAFETY IN



                                                                                                                                    NUMBERS













                                                                                                                               Keeping data secure is crucial. By attaining IS027001 you provide assurance

                                                                                                                                      to staff, clients and suppliers that your business information is safe



                                                                                                                               nformation is the life-blood of   assure clients and insurers that   “If you are responsible for any
                                                                                                                              Ievery business – and even more   security of information is your
                                                                                                                              so if your clients have entrusted their   company’s top priority. It’s also   aspect of your clients’ data, you
                                                                                                                              valuable data to you. If vital data are   a pre-requisite for companies   need to take effective steps to
                                                                                                                              lost, stolen, corrupted or damaged,   responding to many public service
                                                                                                                              you could be in breach of data   and government tenders.  protect their information assets
                                                                                                                              protection legislation and at risk of   BOSS members can access   as well as your own.”
                                                                                                                              litigation.                information security specialists
                                                                                                                                It goes without saying that your   with the industry experience and   organisation, and then recommend,   Benefits of ISO 27001
                                                                                                                              business could also suffer lasting   know-how to design, develop and   discuss and agree practical and   ✱  Safeguards clients’ information
                                                                                                                              damage to its reputation. So, if   implement an ISMS tailored to a   realistic improvements to systems at      assets
                                                                                                                              you are responsible for any aspect   company’s needs.  all levels.                ✱  Demonstrates commitment to
                                                                                                                              of your clients’ data, you need to   With an effective system in place,   They will also develop a fully      security and assures clients
                                                                                                                              take effective steps to protect their   business data and operations will   ‘documented’ system to company   ✱  Opens up new markets
                                                                                                                              information assets as well as your   be well prepared to resist accidental   requirements, assist in implementing   ✱  Facilitates winning tenders
                                                                                                                              own.                       mis-operation or malicious attack.   any necessary changes, including   ✱  Helps protect against litigation
                                                                                                                                                         Every ISMS is built to meet the   training staff to use the ISMS,   ✱  Minimises the risk of security
                                                                                                                              Get certified              ISO27001standard and our experts   conduct audits to ensure that   breaches
                                                                                                                              Implementing and maintaining an   assist all the way through to   systems are fully implemented and   ✱  Helps reduce insurance
                                                                                                                              Information Security Management   certification by an independent   advise on what the organisation      premiums
                                                                                                                              System (ISMS) is the most effective   body. So, what does setting up an   will need to do in order to achieve
                                                    PAGE 32                                                                   way to reduce your risks.    effective ISMS involve? Our expert   ISO27001 certification. They can   n FOR MORE INFORMATION
                                                                                                                                                                                     also recommend a UKAS accredited
                                                                                                                                                         will conduct gap analyses and audits
                                                                                                                                                                                                                CONTACT PHILIP THOMPSON
                                                                                                                              By being certified to the
                                                                                                                              internationally recognised data   to identify the current condition of   certification body and be present   ON: 020 7915 8377 OR
                                                                                                                              security standard ISO27001 you   information security systems in your   during external assessments.  philip.thompson@bpif.org.uk
       32  BOSS TODAY / August 2009                                                                                                                                                                                   August 2009 / BOSS TODAY  33
   27   28   29   30   31   32   33   34   35   36   37