Who are the typical auditees in an ISO 27001 internal audit?

During an internal audit, an auditor will need to speak to people at different levels and authorities within the business - such as:

  • The person who has overall accountability for the process, system or control
  • The person who conducts the process on a day-to-day basis
  • If auditing the awareness of employees, a random sampling of employees, chosen by the auditor, from different areas of the organisation will be needed
No items found.
"
On our path of growing our business, we have found in URM a very capable and knowledgeable consultancy firm to guide and structure our processes towards SOC 2 compliance. The consultancy by URM played an essential role in building our competences and expanding the compliance framework for our SaaS based propositions.
contact US

Let us help you

Let us help you in your compliance journey by completing the form and letting us know how we can best support you.