Governance

Expand all questions

An organisation holds multiple approvals or declarations. Can the different accountable managers delegate the activities under Part-IS to a single person?

Does the organisation need to establish a separate representative for the information security management system (ISMS)?

Should an organisation have one single information security policy even if there are different organisation approvals (OAs) under its umbrella?