ISMS organization
Model the organizational context of your ISMS. Document for your legal entities who is involved in the ISMS and to what extent, and model your ISMS organization with a freehand diagram.
Procedure:
-
Model your ISMS organization in the WebModeller
-
For the shapes in the freehand diagram, establish an object reference to the respective role or committee
-
Model out the objects via the properties by describing the objects and their context
Example: As delivered, the information security officer is at the center of the ISMS organization. He/she stands between the management level and the ISMS team. The ISMS team is responsible for exchanging information with other departments and, in particular, the data protection officer.
Tip: Use the ISMS organization as delivered as a template and model it further.