EnterpriseQualityCoding / FizzBuzzEnterpriseEdition

FizzBuzz Enterprise Edition is a no-nonsense implementation of FizzBuzz made by serious businessmen for serious business purposes.
21.29k stars 751 forks source link

Add sample documentation for ISO 27001 Certification #194

Open vinnyp opened 9 years ago

vinnyp commented 9 years ago

ISO 27001 certification provides an independent attestation of a set of documented practices and procedures that cover a wide range of customer data protection aspects. ISO 27001 is one of many important enterprise certifications. SOC, HIPPA, FISMA, and FedRAMP should also be considered.

Please add documentation on sample practices and procedures which can be applied to an enterprise company. This will show that we truly thought about customer data protection and regulatory compliance.

In order to do this, we'll need to find a PM to create an RFP for generating a document that includes objectives for ISMS in ISO/IEC 27001:2013. We'll also need an SRS conforming to the SWEBOK standard, and an EA analysis conforming to the ISO/IEC/IEEE 42010 standard.

dogweather commented 9 years ago

:+1:

radex commented 9 years ago

@dogweather Please don't use emoji in serious enterprise discussions.