ISO/IEC 27001 ISMS¶
An Information Security Management System (ISMS) consists of the people, processes, procedures, guidelines, and associated resources and activities that are collectively managed by Masdr, in the pursuit of protecting its information assets.
An ISMS provides a systematic approach for establishing, implementing, operating, monitoring, reviewing, maintaining, and continually improving information security in order to support and achieve Masdr's business objectives.
Benefits of an ISMS¶
Effectively defining, achieving, maintaining, and improving information security is essential for Masdr to achieve its objectives, protects its information assets, and maintain its legal, regulatory, and corporate reputation.
Successful adoption of an ISMS enables Masdr to protect its information assets and:
- provide greater assurance that information assets are adequately protected against threats on a continual basis;
- maintain a structured and comprehensive framework for identifying and assessing information security risks, selecting and applying applicable controls, and measuring and improving their effectiveness;
- continually improve the overall control environment; and
- effectively achieve and demonstrate legal and regulatory compliance.
Site Usage¶
Use the navigation menu to access the individual components of the ISMS, including governance documentation, risk management records, operational controls, and continual improvement activities.