What is an ITGP Documentation Toolkit?




              Alexandra Thurman
               IT Governance Ltd
             www.itgovernance.co.uk
What are ITGP Documentation
Toolkits?
• IT Governance Toolkits will help you achieve certification/compliance
     against specific standards/frameworks/regulations. For example the ISMS
     ISO27001 Documentation Toolkit and ITSM, ITIL® & ISO/IEC 20000
     Implementation Toolkit.




• Toolkits contain an integrated suite of documents plus comprehensive
     training and implementation tools designed to save the user months of time
     and effort.
•    Suitable for any sized organisation within any sector.
•    Toolkits are easy to use and easily accessible to those working within the
     organisation.

© IT Governance Ltd 2012
www.itgovernance.co.uk
                                                                                  2
What is in them?

• IT Governance’s documentation toolkits are
     products made up of pre-written
     documentation, templates and project tools that
     will aid significantly in implementation;
     - Policies
     - Procedures
     - Processes
     - Work instructions
     - Forms and records
© IT Governance Ltd 2012
www.itgovernance.co.uk
                                                       3
What’s in them continued...

• Our toolkits are designed to follow
     the same structure as the standard /
     framework / regulation they are
     aligned to. You can see that the
     folder directories indicated here are
     sections of an ISMS and within
     that, the documentation required.

• There are a series of top level
     folders called directories. These
     folders are dependent upon the
     relevant sections within the standard
     / framework / regulation.
                                             Taken from our ISMS ISO27001 Documentation Toolkit.




© IT Governance Ltd 2012
www.itgovernance.co.uk
                                                                                                   4
Standards + ITGP =
Documentation Toolkits
• Not only do we publish our own books and toolkits, we sell the standards
     that they are founded on http://www.itgovernance.co.uk/standards.aspx




© IT Governance Ltd 2012
www.itgovernance.co.uk
                                                                             5
There’s a toolkit for that …

• IT Service Management Standards:
  - ITSM, ITIL® & ISO/IEC 20000 Implementation Toolkit

• Information Security Standards:
  - ISO27001 ISMS Documentation Toolkits
       (Standalone, No1, No2, No3, No4, No5)

• Risk Management Standards:
  - vsRisk

• Business Continuity Standards:
     - BS25999 BCMS Implementation Toolkit

© IT Governance Ltd 2012
www.itgovernance.co.uk
                                                         6
… and that.
• Quality Management System Standards:
  -ISO9001 QMS Documentation Toolkit
• Disaster Recovery Standards:
  -BS25999 BSMS Implementation Toolkit
• Environment and Energy Standards:
  - ISO14001 EMS Environment Management
        System Documentation Toolkit
     - ISO50001 EnMS Energy Management
        System Documentation Toolkit
•    Corporate Governance Standards:
     - IT Governance Framework Toolkit


                 Find a full list of our documentation toolkits at the end of this presentation.

© IT Governance Ltd 2012
www.itgovernance.co.uk
                                                                                                   7
Where you can find ITGP
Documentation Toolkits:

                     We are an international company,
                     and cater to a large global clientele.
                     You can view more information or
                     purchase our documentation toolkits
                     on the following websites:
                     www.itgovernance.co.uk
                     www.itgovernanceusa.com
                     www.itgovernance.eu
                     www.itsmfusa.com
                     www.27001.com



                © IT Governance Ltd 2012
                www.itgovernance.co.uk
                                                              8
Compatibility:
What format are they in?
- Microsoft® Office 2007
                 Microsoft ® Word is the formal format of our toolkits policies and procedures,
                 work instructions, and, some forms and records.


                           Microsoft ® PowerPoint® is where our training-aid templates are
                           created.

                 Microsoft ® Excel® is the general format for our forms and records, matrices
                 and models.


 These formats ensure that our toolkit products are fully adaptable, user friendly and
 tangible.
 By creating our toolkit documentation in these formats and programmes, it gives the
 customer/organisation the full control over their own documentation system within the
 comfort of a familiar computer programme.

© IT Governance Ltd 2012
www.itgovernance.co.uk
                                                                                                  9
To give you a visual ...
                                  Document Control
                                  Reference:
Document name and relevant tier   Issue:
                                  Issue Date:
                                  Page No:




Document Owner and
Approval




   © IT Governance Ltd 2012
   www.itgovernance.co.uk
                                                     10
Some key features of the
    documentation explained …
                               Identify the tiered   Always have document
                               structure of your     control and references for
                               documentation.        individual documents and
Roles and                                            keep them updated.
Responsibilities are
identified in the document.




                                                               Authors/editors may
                                                               leave comments to
                                                               instruct you through
         [Fill in areas with                                   areas of certain
         these brackets]                                       documentation.
                                                               Footnotes are also
                                                               included on some
                                                               documents.
    © IT Governance Ltd 2012
    www.itgovernance.co.uk
                                                                                  11
All inclusive ...
Roles and Responsibility Matrix; For each document contained in an IT Governance published toolkit, there
are roles and responsibilities. For every document, these roles and responsibilities are identified at the bottom of the
document and are documented in this matrix – included in every ITG toolkit.




 © IT Governance Ltd 2012
 www.itgovernance.co.uk
                                                                                                                           12
How do I use a toolkit?
One option is: D.I.Y
Toolkits are designed as a ‘do-it-yourself’ set of resources. To do this you’ll need to:
• Familiarise yourself with the user instructions specific to the toolkit before you attempt
   to deploy the documentation.
• Identify which areas of the toolkit are applicable to you and your organisation and
   project.
• Assign roles and responsibilities to staff within your organisation.

Or, IT Governance Consultants
Where required our IT Governance Consultants can help you to implement a
management system using one of our toolkits to further accelerate the project. They can
help you to:
    - Identify your scope.
    - Identify which areas are applicable to your organisational structure, objectives and
      staff.

© IT Governance Ltd 2012
www.itgovernance.co.uk
                                                                                               13
How will it actually help me?
• Helps you develop the documentation within your organisation required by
     the standard / framework / regulation.

• Written in a format recognised by standard bodies and mapped to the
     necessary elements of the standard / framework / regulation.

• IT Governance toolkits ensure you have everything necessary, that is
     required for certification/compliance.

• Save time and reduce errors, helping you to gain certification with the least
     amount of cost.

• Say Good Bye to dead-end trial and errors, and most importantly
               Don’t waste your time trying to reinvent the wheel!
© IT Governance Ltd 2012
www.itgovernance.co.uk
                                                                                  14
The proof is in the pudding!
         Essential...for information
       security professionals in these                       For complete coverage of the
        days of increased focus on                          standard, this...is unparalleled.
        compliance and standards.



  Milo Doyle, Head of                            Dr Jon G Hall, Open University
  Information Security, EBS
  Building Society, Ireland
                                                   IT Governance Ltd "gets it".
                                         Their toolkits are all you really need to produce
                                    documentation that upholds the integrity of ISO and puts
                                        you in an audit-ready position for SOX and PCI
                                      compliance...They deliver toolkits with easy to follow
                                       instructions and pre-written templates to help you
                                     produce documentation for your Information Security
                                                               Manual.
Tim Moreton, President,
Moreton & Co., airlinetechnology.net

 © IT Governance Ltd 2012
 www.itgovernance.co.uk
                                                                                                15
IT Governance’s Documentation
Toolkit library
ISMS
•    Standalone ISO27001 ISMS Documentation Toolkit:
     http://www.itgovernance.co.uk/products/1
•    No1 ISO27001 Complete ISMS Toolkit: http://www.itgovernance.co.uk/products/242
•    No2 ISO27001 Integrated ISMS Toolkit: http://www.itgovernance.co.uk/products/450
•    No3 ISO27001 Comprehensive ISMS Toolkit:
     http://www.itgovernance.co.uk/products/718
•    No4 ISO27001 Starter ISMS Documentation Toolkit:
     http://www.itgovernance.co.uk/products/37
•    No5 ISO27001 Essentials ISMS Documentation Toolkit:
     http://www.itgovernance.co.uk/products/40
•    Complete Endpoint Security Toolkit: http://www.itgovernance.co.uk/products/29
•    Corporate Toolkit: PDA Security: http://www.itgovernance.co.uk/products/28
•    Corporate Toolkit: Security Wireless on the Road:
     http://www.itgovernance.co.uk/products/27


© IT Governance Ltd 2012
www.itgovernance.co.uk
                                                                                        16
IT Governance’s Documentation
Toolkit library
BCMS
• BS25999 BCMS Implementation Toolkit:
    http://www.itgovernance.co.uk/products/2198
DPA
• DPA Compliance Assessment Tool: http://www.itgovernance.co.uk/products/1791
• Complete Data Protection Toolkit: http://www.itgovernance.co.uk/products/2823
• DPA Compliance with BS10012 Documentation Toolkit:
    http://www.itgovernance.co.uk/products/2975
• DPA Compliance Toolkit: http://www.itgovernance.co.uk/products/1788
PCI
• PCI DSS Documentation Toolkit: http://www.itgovernance.co.uk/products/1337
QMS
• ISO9001 QMS Quality Management System Documentation Toolkit:
    http://www.itgovernance.co.uk/products/3033



© IT Governance Ltd 2012
www.itgovernance.co.uk
                                                                                  17
IT Governance’s Documentation
Toolkit library
EnMS
• EN16001 Energy Management System Documentation Toolkit:
   http://www.itgovernance.co.uk/products/3089
• ISO50001 EnMS Energy Management System Documentation Toolkit:
   http://www.itgovernance.co.uk/products/3546
OHSMS
• OHSAS18001 Occupational Health and Safety Documentation Toolkit:
   http://www.itgovernance.co.uk/products/3279
N3
• N3 NHS Commercial Third Party (CTP) IG Documentation Toolkit:
   http://www.itgovernance.co.uk/products/3544
Social Media
• Social Media Governance Toolkit: http://www.itgovernance.co.uk/products/2974
• SharePoint Governance Toolkit: http://www.itgovernance.co.uk/products/3093


© IT Governance Ltd 2012
www.itgovernance.co.uk
                                                                                 18
IT Governance’s Documentation
Toolkit library
IT Governance
• IT Governance Framework Toolkit: http://www.itgovernance.co.uk/products/519
• E-Discovery No.1: http://www.itgovernance.co.uk/products/1007
• E-Discovery No.2: http://www.itgovernance.co.uk/products/1010
EMS
• ISO14001 EMS Environmental Management System Documentation Toolkit:
    http://www.itgovernance.co.uk/products/2958
ITSM
• ISO/IEC 20000 Documentation Toolkit: http://www.itgovernance.co.uk/products/3547
• ITSM, ITIL & ISO/IEC 20000 Implementation Toolkit:
    http://www.itgovernance.co.uk/products/3370




© IT Governance Ltd 2012
www.itgovernance.co.uk
                                                                                     19

More Related Content

PPTX
ITIL v3 vs v4
PPTX
Introduction à e-SCM
PDF
SAS/Tableau integration
PDF
AWS Black Belt Online Seminar 2017 Auto Scaling
PDF
Cloud-Barista 제7차 컨퍼런스 : 클라우드바리스타 활용 사례 - Multi-Cloud as a Service, MCaaS
PDF
機密データとSaaSは共存しうるのか!?セキュリティー重視のユーザー層を取り込む為のネットワーク通信のアプローチ
PDF
Apache EventMesh を使ってみた
PDF
20190821 AWS Black Belt Online Seminar AWS AppSync
ITIL v3 vs v4
Introduction à e-SCM
SAS/Tableau integration
AWS Black Belt Online Seminar 2017 Auto Scaling
Cloud-Barista 제7차 컨퍼런스 : 클라우드바리스타 활용 사례 - Multi-Cloud as a Service, MCaaS
機密データとSaaSは共存しうるのか!?セキュリティー重視のユーザー層を取り込む為のネットワーク通信のアプローチ
Apache EventMesh を使ってみた
20190821 AWS Black Belt Online Seminar AWS AppSync

What's hot (20)

PPTX
OCI Data Catalog Overview 2021年5月版
PDF
Splunk IT Service Intelligence Sandbox Guidebook
PDF
ITIL 4 Verses ITIL v3
PDF
20200804 AWS Black Belt Online Seminar Amazon CodeGuru
PDF
20210317 AWS Black Belt Online Seminar Amazon MQ
PDF
대용량 트래픽을 처리하는 최적의 서버리스 애플리케이션 - 안효빈, 구성완 AWS 솔루션즈 아키텍트 :: AWS Summit Seoul 2021
PDF
AWS Black Belt Tech シリーズ 2015 - Amazon EC2 スポットインスタンス & Auto Scaling
PDF
20240207 Comparison of AWS Security Hub and 3rd party CSPM, consideration of...
PDF
IAM Roles Anywhereのない世界とある世界(2022年のAWSアップデートを振り返ろう ~Season 4~ 発表資料)
PPTX
サーバーワークスのAWS構築自動化の仕組み
PDF
AWS Black Belt Online Seminar 2016 AWS CloudFormation
PDF
Security on AWS :: 이경수 솔루션즈아키텍트
PDF
SharePoint Online で最近の困った。 大きなリストのお話。
PDF
DataDrift in Azure Machine Learning
PDF
20211203 AWS Black Belt Online Seminar AWS re:Invent 2021アップデート速報
PDF
[CTO Night & Day 2019] AWS で構築するデータレイク基盤と amazon.com での導入事例 #ctonight
PDF
게임 산업을 위한 네이버클라우드플랫폼(정낙수 클라우드솔루션아키텍트) - 네이버클라우드플랫폼 게임인더스트리데이 Naver Cloud Plat...
PPTX
Kinesis Firehoseを使ってみた
PDF
20190130 AWS Black Belt Online Seminar AWS Identity and Access Management (AW...
PPTX
Microsoft Cloud Adoption Framework for Azure: Thru Partner Governance Workshop
OCI Data Catalog Overview 2021年5月版
Splunk IT Service Intelligence Sandbox Guidebook
ITIL 4 Verses ITIL v3
20200804 AWS Black Belt Online Seminar Amazon CodeGuru
20210317 AWS Black Belt Online Seminar Amazon MQ
대용량 트래픽을 처리하는 최적의 서버리스 애플리케이션 - 안효빈, 구성완 AWS 솔루션즈 아키텍트 :: AWS Summit Seoul 2021
AWS Black Belt Tech シリーズ 2015 - Amazon EC2 スポットインスタンス & Auto Scaling
20240207 Comparison of AWS Security Hub and 3rd party CSPM, consideration of...
IAM Roles Anywhereのない世界とある世界(2022年のAWSアップデートを振り返ろう ~Season 4~ 発表資料)
サーバーワークスのAWS構築自動化の仕組み
AWS Black Belt Online Seminar 2016 AWS CloudFormation
Security on AWS :: 이경수 솔루션즈아키텍트
SharePoint Online で最近の困った。 大きなリストのお話。
DataDrift in Azure Machine Learning
20211203 AWS Black Belt Online Seminar AWS re:Invent 2021アップデート速報
[CTO Night & Day 2019] AWS で構築するデータレイク基盤と amazon.com での導入事例 #ctonight
게임 산업을 위한 네이버클라우드플랫폼(정낙수 클라우드솔루션아키텍트) - 네이버클라우드플랫폼 게임인더스트리데이 Naver Cloud Plat...
Kinesis Firehoseを使ってみた
20190130 AWS Black Belt Online Seminar AWS Identity and Access Management (AW...
Microsoft Cloud Adoption Framework for Azure: Thru Partner Governance Workshop
Ad

Similar to What is an ITGP Documentation Toolkit? (20)

PPTX
ISO27001_COBIT_Students.pptx
PDF
Reqpro user
PDF
ITSM and TOGAF 9 v0 5
PPTX
tibbr Enterprise Social Governance Webinar
PPTX
Dmt 5899 workshop - Learn to Collaborate, Trace, Review and Reuse Your Requir...
PPTX
COBIT 5 & 4.1 Comparison
PDF
Spagic 3: OSGi Universal Middleware for an effective SOA solution
PDF
The Anchor Store: Four Confluence Examples to Root Your Deployment
PDF
2 Using A Little Architecture
DOCX
Chapter 6Information Governance policy developmentDr. Sand.docx
PPTX
Enterprise Social Governance: Who Owns What and Why
PDF
ICT toolkit (2006)
PDF
Whitepaper Practical Information Technology Governance
PPT
Chris Vanderweylan
PDF
Using cobit to integrate build and run
PDF
IT Governance
PPTX
Enterprise Architecture Approach Togaf 9
PPTX
Mcom Ba Training Module 1
PDF
Mag4free newsletter 4
PDF
SPSDenver-Enforcing.SP.Governance
ISO27001_COBIT_Students.pptx
Reqpro user
ITSM and TOGAF 9 v0 5
tibbr Enterprise Social Governance Webinar
Dmt 5899 workshop - Learn to Collaborate, Trace, Review and Reuse Your Requir...
COBIT 5 & 4.1 Comparison
Spagic 3: OSGi Universal Middleware for an effective SOA solution
The Anchor Store: Four Confluence Examples to Root Your Deployment
2 Using A Little Architecture
Chapter 6Information Governance policy developmentDr. Sand.docx
Enterprise Social Governance: Who Owns What and Why
ICT toolkit (2006)
Whitepaper Practical Information Technology Governance
Chris Vanderweylan
Using cobit to integrate build and run
IT Governance
Enterprise Architecture Approach Togaf 9
Mcom Ba Training Module 1
Mag4free newsletter 4
SPSDenver-Enforcing.SP.Governance
Ad

More from IT Governance Ltd (20)

PDF
GDPR compliance and information security: Reducing data breach risks
PDF
Business Continuity Management: How to get started
PDF
Staff awareness: developing a security culture
PDF
GDPR compliance: getting everyone in the organisation on board
PPTX
GDPR challenges for the healthcare sector and the practical steps to compliance
PDF
Cyber Essentials plays a key role in the Cyber Resilience Strategy for Scotla...
PDF
Creating an effective cyber security awareness programme
PDF
Data Flow Mapping and the EU GDPR
PPTX
Risk assessments and applying organisational controls for GDPR compliance
PPTX
The GDPR and its requirements for implementing data protection impact assessm...
PPTX
Legal obligations and responsibilities of data processors and controllers und...
PPTX
The first steps towards GDPR compliance 
PPTX
Data transfers to countries outside the EU/EEA under the GDPR
PPTX
The GDPR’s impact on your business and preparing for compliance
PPTX
The GDPR and NIS Directive Risk-Based Security Measures and Incident Notifica...
PDF
Addressing penetration testing and vulnerabilities, and adding verification m...
PDF
NY State's cybersecurity legislation requirements for risk management, securi...
PDF
Revising policies and procedures under the new EU GDPR
PDF
Privacy and the GDPR: How Cloud computing could be your failing
PDF
EU GDPR and you: requirements for marketing
GDPR compliance and information security: Reducing data breach risks
Business Continuity Management: How to get started
Staff awareness: developing a security culture
GDPR compliance: getting everyone in the organisation on board
GDPR challenges for the healthcare sector and the practical steps to compliance
Cyber Essentials plays a key role in the Cyber Resilience Strategy for Scotla...
Creating an effective cyber security awareness programme
Data Flow Mapping and the EU GDPR
Risk assessments and applying organisational controls for GDPR compliance
The GDPR and its requirements for implementing data protection impact assessm...
Legal obligations and responsibilities of data processors and controllers und...
The first steps towards GDPR compliance 
Data transfers to countries outside the EU/EEA under the GDPR
The GDPR’s impact on your business and preparing for compliance
The GDPR and NIS Directive Risk-Based Security Measures and Incident Notifica...
Addressing penetration testing and vulnerabilities, and adding verification m...
NY State's cybersecurity legislation requirements for risk management, securi...
Revising policies and procedures under the new EU GDPR
Privacy and the GDPR: How Cloud computing could be your failing
EU GDPR and you: requirements for marketing

Recently uploaded (20)

PDF
Aug23rd - Mulesoft Community Workshop - Hyd, India.pdf
PDF
A symptom-driven medical diagnosis support model based on machine learning te...
PDF
The-2025-Engineering-Revolution-AI-Quality-and-DevOps-Convergence.pdf
PDF
CEH Module 2 Footprinting CEH V13, concepts
PDF
Planning-an-Audit-A-How-To-Guide-Checklist-WP.pdf
PDF
Introduction to MCP and A2A Protocols: Enabling Agent Communication
PDF
CXOs-Are-you-still-doing-manual-DevOps-in-the-age-of-AI.pdf
PDF
zbrain.ai-Scope Key Metrics Configuration and Best Practices.pdf
PDF
Dell Pro Micro: Speed customer interactions, patient processing, and learning...
PDF
Transform-Your-Supply-Chain-with-AI-Driven-Quality-Engineering.pdf
PDF
giants, standing on the shoulders of - by Daniel Stenberg
PDF
LMS bot: enhanced learning management systems for improved student learning e...
PDF
MENA-ECEONOMIC-CONTEXT-VC MENA-ECEONOMIC
PDF
Rapid Prototyping: A lecture on prototyping techniques for interface design
PDF
Build Real-Time ML Apps with Python, Feast & NoSQL
PPTX
Build automations faster and more reliably with UiPath ScreenPlay
PDF
Connector Corner: Transform Unstructured Documents with Agentic Automation
PDF
Ensemble model-based arrhythmia classification with local interpretable model...
PPTX
SGT Report The Beast Plan and Cyberphysical Systems of Control
PDF
Early detection and classification of bone marrow changes in lumbar vertebrae...
Aug23rd - Mulesoft Community Workshop - Hyd, India.pdf
A symptom-driven medical diagnosis support model based on machine learning te...
The-2025-Engineering-Revolution-AI-Quality-and-DevOps-Convergence.pdf
CEH Module 2 Footprinting CEH V13, concepts
Planning-an-Audit-A-How-To-Guide-Checklist-WP.pdf
Introduction to MCP and A2A Protocols: Enabling Agent Communication
CXOs-Are-you-still-doing-manual-DevOps-in-the-age-of-AI.pdf
zbrain.ai-Scope Key Metrics Configuration and Best Practices.pdf
Dell Pro Micro: Speed customer interactions, patient processing, and learning...
Transform-Your-Supply-Chain-with-AI-Driven-Quality-Engineering.pdf
giants, standing on the shoulders of - by Daniel Stenberg
LMS bot: enhanced learning management systems for improved student learning e...
MENA-ECEONOMIC-CONTEXT-VC MENA-ECEONOMIC
Rapid Prototyping: A lecture on prototyping techniques for interface design
Build Real-Time ML Apps with Python, Feast & NoSQL
Build automations faster and more reliably with UiPath ScreenPlay
Connector Corner: Transform Unstructured Documents with Agentic Automation
Ensemble model-based arrhythmia classification with local interpretable model...
SGT Report The Beast Plan and Cyberphysical Systems of Control
Early detection and classification of bone marrow changes in lumbar vertebrae...

What is an ITGP Documentation Toolkit?

  • 1. What is an ITGP Documentation Toolkit? Alexandra Thurman IT Governance Ltd www.itgovernance.co.uk
  • 2. What are ITGP Documentation Toolkits? • IT Governance Toolkits will help you achieve certification/compliance against specific standards/frameworks/regulations. For example the ISMS ISO27001 Documentation Toolkit and ITSM, ITIL® & ISO/IEC 20000 Implementation Toolkit. • Toolkits contain an integrated suite of documents plus comprehensive training and implementation tools designed to save the user months of time and effort. • Suitable for any sized organisation within any sector. • Toolkits are easy to use and easily accessible to those working within the organisation. © IT Governance Ltd 2012 www.itgovernance.co.uk 2
  • 3. What is in them? • IT Governance’s documentation toolkits are products made up of pre-written documentation, templates and project tools that will aid significantly in implementation; - Policies - Procedures - Processes - Work instructions - Forms and records © IT Governance Ltd 2012 www.itgovernance.co.uk 3
  • 4. What’s in them continued... • Our toolkits are designed to follow the same structure as the standard / framework / regulation they are aligned to. You can see that the folder directories indicated here are sections of an ISMS and within that, the documentation required. • There are a series of top level folders called directories. These folders are dependent upon the relevant sections within the standard / framework / regulation. Taken from our ISMS ISO27001 Documentation Toolkit. © IT Governance Ltd 2012 www.itgovernance.co.uk 4
  • 5. Standards + ITGP = Documentation Toolkits • Not only do we publish our own books and toolkits, we sell the standards that they are founded on http://www.itgovernance.co.uk/standards.aspx © IT Governance Ltd 2012 www.itgovernance.co.uk 5
  • 6. There’s a toolkit for that … • IT Service Management Standards: - ITSM, ITIL® & ISO/IEC 20000 Implementation Toolkit • Information Security Standards: - ISO27001 ISMS Documentation Toolkits (Standalone, No1, No2, No3, No4, No5) • Risk Management Standards: - vsRisk • Business Continuity Standards: - BS25999 BCMS Implementation Toolkit © IT Governance Ltd 2012 www.itgovernance.co.uk 6
  • 7. … and that. • Quality Management System Standards: -ISO9001 QMS Documentation Toolkit • Disaster Recovery Standards: -BS25999 BSMS Implementation Toolkit • Environment and Energy Standards: - ISO14001 EMS Environment Management System Documentation Toolkit - ISO50001 EnMS Energy Management System Documentation Toolkit • Corporate Governance Standards: - IT Governance Framework Toolkit Find a full list of our documentation toolkits at the end of this presentation. © IT Governance Ltd 2012 www.itgovernance.co.uk 7
  • 8. Where you can find ITGP Documentation Toolkits: We are an international company, and cater to a large global clientele. You can view more information or purchase our documentation toolkits on the following websites: www.itgovernance.co.uk www.itgovernanceusa.com www.itgovernance.eu www.itsmfusa.com www.27001.com © IT Governance Ltd 2012 www.itgovernance.co.uk 8
  • 9. Compatibility: What format are they in? - Microsoft® Office 2007 Microsoft ® Word is the formal format of our toolkits policies and procedures, work instructions, and, some forms and records. Microsoft ® PowerPoint® is where our training-aid templates are created. Microsoft ® Excel® is the general format for our forms and records, matrices and models. These formats ensure that our toolkit products are fully adaptable, user friendly and tangible. By creating our toolkit documentation in these formats and programmes, it gives the customer/organisation the full control over their own documentation system within the comfort of a familiar computer programme. © IT Governance Ltd 2012 www.itgovernance.co.uk 9
  • 10. To give you a visual ... Document Control Reference: Document name and relevant tier Issue: Issue Date: Page No: Document Owner and Approval © IT Governance Ltd 2012 www.itgovernance.co.uk 10
  • 11. Some key features of the documentation explained … Identify the tiered Always have document structure of your control and references for documentation. individual documents and Roles and keep them updated. Responsibilities are identified in the document. Authors/editors may leave comments to instruct you through [Fill in areas with areas of certain these brackets] documentation. Footnotes are also included on some documents. © IT Governance Ltd 2012 www.itgovernance.co.uk 11
  • 12. All inclusive ... Roles and Responsibility Matrix; For each document contained in an IT Governance published toolkit, there are roles and responsibilities. For every document, these roles and responsibilities are identified at the bottom of the document and are documented in this matrix – included in every ITG toolkit. © IT Governance Ltd 2012 www.itgovernance.co.uk 12
  • 13. How do I use a toolkit? One option is: D.I.Y Toolkits are designed as a ‘do-it-yourself’ set of resources. To do this you’ll need to: • Familiarise yourself with the user instructions specific to the toolkit before you attempt to deploy the documentation. • Identify which areas of the toolkit are applicable to you and your organisation and project. • Assign roles and responsibilities to staff within your organisation. Or, IT Governance Consultants Where required our IT Governance Consultants can help you to implement a management system using one of our toolkits to further accelerate the project. They can help you to: - Identify your scope. - Identify which areas are applicable to your organisational structure, objectives and staff. © IT Governance Ltd 2012 www.itgovernance.co.uk 13
  • 14. How will it actually help me? • Helps you develop the documentation within your organisation required by the standard / framework / regulation. • Written in a format recognised by standard bodies and mapped to the necessary elements of the standard / framework / regulation. • IT Governance toolkits ensure you have everything necessary, that is required for certification/compliance. • Save time and reduce errors, helping you to gain certification with the least amount of cost. • Say Good Bye to dead-end trial and errors, and most importantly Don’t waste your time trying to reinvent the wheel! © IT Governance Ltd 2012 www.itgovernance.co.uk 14
  • 15. The proof is in the pudding! Essential...for information security professionals in these For complete coverage of the days of increased focus on standard, this...is unparalleled. compliance and standards. Milo Doyle, Head of Dr Jon G Hall, Open University Information Security, EBS Building Society, Ireland IT Governance Ltd "gets it". Their toolkits are all you really need to produce documentation that upholds the integrity of ISO and puts you in an audit-ready position for SOX and PCI compliance...They deliver toolkits with easy to follow instructions and pre-written templates to help you produce documentation for your Information Security Manual. Tim Moreton, President, Moreton & Co., airlinetechnology.net © IT Governance Ltd 2012 www.itgovernance.co.uk 15
  • 16. IT Governance’s Documentation Toolkit library ISMS • Standalone ISO27001 ISMS Documentation Toolkit: http://www.itgovernance.co.uk/products/1 • No1 ISO27001 Complete ISMS Toolkit: http://www.itgovernance.co.uk/products/242 • No2 ISO27001 Integrated ISMS Toolkit: http://www.itgovernance.co.uk/products/450 • No3 ISO27001 Comprehensive ISMS Toolkit: http://www.itgovernance.co.uk/products/718 • No4 ISO27001 Starter ISMS Documentation Toolkit: http://www.itgovernance.co.uk/products/37 • No5 ISO27001 Essentials ISMS Documentation Toolkit: http://www.itgovernance.co.uk/products/40 • Complete Endpoint Security Toolkit: http://www.itgovernance.co.uk/products/29 • Corporate Toolkit: PDA Security: http://www.itgovernance.co.uk/products/28 • Corporate Toolkit: Security Wireless on the Road: http://www.itgovernance.co.uk/products/27 © IT Governance Ltd 2012 www.itgovernance.co.uk 16
  • 17. IT Governance’s Documentation Toolkit library BCMS • BS25999 BCMS Implementation Toolkit: http://www.itgovernance.co.uk/products/2198 DPA • DPA Compliance Assessment Tool: http://www.itgovernance.co.uk/products/1791 • Complete Data Protection Toolkit: http://www.itgovernance.co.uk/products/2823 • DPA Compliance with BS10012 Documentation Toolkit: http://www.itgovernance.co.uk/products/2975 • DPA Compliance Toolkit: http://www.itgovernance.co.uk/products/1788 PCI • PCI DSS Documentation Toolkit: http://www.itgovernance.co.uk/products/1337 QMS • ISO9001 QMS Quality Management System Documentation Toolkit: http://www.itgovernance.co.uk/products/3033 © IT Governance Ltd 2012 www.itgovernance.co.uk 17
  • 18. IT Governance’s Documentation Toolkit library EnMS • EN16001 Energy Management System Documentation Toolkit: http://www.itgovernance.co.uk/products/3089 • ISO50001 EnMS Energy Management System Documentation Toolkit: http://www.itgovernance.co.uk/products/3546 OHSMS • OHSAS18001 Occupational Health and Safety Documentation Toolkit: http://www.itgovernance.co.uk/products/3279 N3 • N3 NHS Commercial Third Party (CTP) IG Documentation Toolkit: http://www.itgovernance.co.uk/products/3544 Social Media • Social Media Governance Toolkit: http://www.itgovernance.co.uk/products/2974 • SharePoint Governance Toolkit: http://www.itgovernance.co.uk/products/3093 © IT Governance Ltd 2012 www.itgovernance.co.uk 18
  • 19. IT Governance’s Documentation Toolkit library IT Governance • IT Governance Framework Toolkit: http://www.itgovernance.co.uk/products/519 • E-Discovery No.1: http://www.itgovernance.co.uk/products/1007 • E-Discovery No.2: http://www.itgovernance.co.uk/products/1010 EMS • ISO14001 EMS Environmental Management System Documentation Toolkit: http://www.itgovernance.co.uk/products/2958 ITSM • ISO/IEC 20000 Documentation Toolkit: http://www.itgovernance.co.uk/products/3547 • ITSM, ITIL & ISO/IEC 20000 Implementation Toolkit: http://www.itgovernance.co.uk/products/3370 © IT Governance Ltd 2012 www.itgovernance.co.uk 19