| |
|
|
|
|
|
|
Why have separate management systems for quality and information
security when only one is really necessary? Indeed, why have separate management systems for IT service provision, business continuity, environmental protection, etc., etc. Why not have one audit
covering all of these standards: ISO 9001, ISO/IEC 27001, ISO/IEC 20000, BS 25999, etc., etc.? It is less expensive and a
more efficient use of your time. It also helps to ensure that all of these concerns are treated as a line management
responsibility, ensuring conformance with the "management commitment"
requirements of these standards. Many certification bodies are
calling this the shape of the future. If you have a sophisticated management structure, with various departments shouldering prime responsibility for these various diverse responsibilities, don't worry, we have a technique - the overarching/subordinate concept, for dealing with that.
We put you, the CEO, in charge.
|
|
|
Your response - ask Gamma to help you create your Integrated Management System
We have an extremely effective approach to creating Integrated Management Systems.
Bearing in mind that all management systems (as defined by ISO) are really a management capability supported by documentation and records, we have a Productised IP-led Service (PIPS) that consists of a package of expertise, client training and technology, that can deliver a certified Integrated Management System in record time.
More than that, it is completely understandable by the most senior people in your organisation.
Unlike traditional systems, our hypertext IMS-Smart technology, puts all your IMS documentation and records at your finger tips. Try out the demonstration version below.
It is based on our pioneering work in Mauritius and our Fast Track Method. |
|
|
PRESS HERE TO OPEN UP THE DEMONSTRATION IN A SEPARATE WINDOW
Try the following:
- Click on Conformance, scroll down and click on any of the hyperlinks to see how conformance with the various standards is demonstrated. Note the use of records. Requirement 4.2.1 (b)(5) is a good example.
- Look at the AIL-SOA for ISO 9001. This is how we treat the Standard's permitted exclusions.
- Look at the pages on risk and in particular the information security risk treatment plans.
- Look at the rest of the Common PDCA framework - IMS Management, Training & Awareness, Internal Audit etc.
- Note that some of the hyperlinks (e.g. in the risk treatment plans, opens up in the "footnote" window.
|
IMS-Smart is the latest version of our long standing management system technology, which in its various forms has been used in a variety of organisations world-wide. Below left we illustrate our long standing seminal work in Mauritius, and on the right some work we performed in the fall of 2007 in Kuwait. Most notable in both cases is the speed at which the IMS can be constructed and made ready, including the physiological preparation of the client through a variety of training programs, for certification. We thought our initial work in Mauritius (2003-4) was fast - 4 months - but in the case of Kuwait we halved this to a shade under two months.
Your next move
Take an look at our brochure (best viewed "two-up" in Adobe reader) and our slide show and then ...
... simply contact David Brewer. Why not do it now!
|