Filter

20

Assessments

18

Risks

3

Audit Findings

2

Documents

Overall Details

Compliance Score

70%

The last score on 10 Jun 22 was 60%

5

Risk

Compliance Trend

Action Plan

1

Due

1

Not
Solved

6

Total


The last action plan was done on
10 Jun 22, but Not Resolved%

ISO 9001 QMS (Quality Management System)In Progress
PDF | 17 MB

You Have Completed
90/100 Questions

Compliance

90%
Sort & Filter
Main Clause Sub Clause Child Clauses Clause Efficiency Implementation Status Assess
3. Control domains 3.1. Cyber Security Leadership and Governance 3.1.1 Cyber Security Governance A cyber security committee should be established and be mandated by the board.
Good (75%)
Implemented (100%)
The cyber security committee should be headed by an independent senior manager from a control function.
Good (75%)
Implemented (100%)
The following positions should be represented in the cyber security committee:
  • senior managers from all relevant departments (e.g., COO, CIO, compliance officer, heads of relevant business departments);
  • Chief information security officer (CISO);
  • Chief information security officer (CISO);
Efficient (100%)
Alternative (50%)
A cyber security committee charter should be developed, approved and reflect:
Fair (50%)
Not Implemented
3.1.2 Cyber Security Strategy The cyber security strategy should be defined, approved, maintained and executed.
Good (75%)
Implemented (100%)
The cyber security strategy should be aligned with:
Poor (25%)
Alternative (50%)
3.1.3 Cyber Security Policy The cyber security policy should be defined, approved and communicated.
Good (75%)
Implemented (100%)
The cyber security policy should be reviewed periodically according to a predefined and structured review process.
Poor (25%)
Alternative (50%)
3.1.4 Cyber Security Roles and Responsibilities The Board of Directors has the ultimate responsibility for cyber security, including:
  • ensuring that sufficient budget for cyber security is allocated;
  • approving the cyber security committee charter;
Efficient (100%)
Implemented (100%)
The cyber security committee should be responsible for:
Poor (25%)
Alternative (50%)
4. Framework Structure and Features 4.1 Structure - Cyber Security Leadership and Governance.
Good (75%)
Implemented (100%)
Cyber Security Risk Management and Compliance.
Good (75%)
Implemented (100%)
Cyber Security Operations and Technology.
Good (75%)
Implemented (100%)
Third Party Cyber Security.
Good (75%)
Implemented (100%)
# Month Score Status Action
1 January 60%
Completed
2 February 70%
Pending
3 March 80%
In Progress
4 April 90%
In Progress
Compliance Score

70%
444
555
×
Quarter
Q1 Q2 Q3 Q4
Is Auditor
Deesignation
Developer Designer
Sub Section
Interview