In this article I lay bare how to write, define and implement ISO 27001 Scope. A beginners guide, exposing the insider trade secrets, giving you the templates that will save you hours of your life and showing you exactly what you need to do to satisfy it for ISO27001 certification. We show you exactly what changed in the ISO27001:2022 update. I am Stuart Barker the ISO27001 Ninja and this is how to define ISO 27001 Scope
How to define ISO 27001 Scope: Step By Step
When defining your scope be as clear as you can and include in your scope document the things that are in scope and the things that are out of scope. This is an extension to the scope statement and for your own management. Consider
- Systems
- People
- Locations
- Departments
Providing good documentation such as a Scope Document with associated architecture diagrams, technical documentation, network diagrams will enable you to define the boundaries of your ISO 27001 scope more clearly.
How to define ISO 27001 Scope
- List your products and services
Create list of all of your products and services. Use the names that your customers use and know them by.
- Choose the products and services that need ISO 27001 certification
From the list of all of your products and services choose the ones that customers are asking you about and / or the ones that you want to have and ISO 27001 certificate for.
- Identify the people, technology and premises that make up the chosen products and services.
List out the departments in the company, the technologies and the locations that make up the products and / or services that you want to have and ISO 27001 certification.
- Write a clear ISO 27001 scope statement
Write a clear statement that states the products and / or services and then clearly sets out the people, technology and locations that are in scope for the ISO 27001 certification.
ISO 27001 Scope Statement Tutorial
In this short tutorial we show you how to use the ISO 27001 Scope Statement
ISO 27001 Scope Statement Template
Doing so many ISO 27001 certifications over the years led to the creation of the ISO 27001 Scope Document Template that people can use as part of their own ISO 27001 certification.
Read Next
- Guaranteed ISO 27001 Certification up to 10x Faster and 30x Cheaper
- The Ultimate ISO 27001 TOOLKIT so you can do it yourself
- ISO 27001 Exposed: The facts you must know (Not knowing these could cost you $10,000s!)
- 25 Things You Must Know Before Going for ISO 27001 Certification (Number 3 will blow your mind!)