前往小程序,Get更优阅读体验!
立即前往
首页
学习
活动
专区
工具
TVP
发布
社区首页 >专栏 >CISSP考试指南笔记:6.5 管理评审

CISSP考试指南笔记:6.5 管理评审

作者头像
血狼debugeeker
发布2021-03-23 11:08:56
2670
发布2021-03-23 11:08:56
举报
文章被收录于专栏:debugeeker的专栏debugeeker的专栏

A management review is a formal meeting of senior organizational leaders to determine whether the management systems are effectively accomplishing their goals.

While management reviews have been around for a very long time, the modern use of the term is perhaps best grounded in quality standards such as the ISO 9000 series. These standards define a Plan-Do-Check-Act loop.

The Plan phase mostly maps to the material in Chapter 1. This phase is the foundation of everything else we do in an ISMS, because it determines our goals and drives our policies.

The Do phase of the loop is covered in a variety of places, but is the focal point of Chapter 7.

The Check phase is the main topic of most of this chapter.

Lastly, the Act phase is what we formally do in the management review.

The management review, unsurprisingly, looks at the big picture in order to help set the strategy moving forward.

When communicating with senior executives, it is important to speak the language of the business and to do so in a succinct manner.

Before the Management Review


The management review should happen periodically. The more immature the management system and/or the organization, the more frequent these reviews should take place.

The frequency of the meetings should also be synchronized with the length of time required to implement the decisions of the preceding review.

本文参与 腾讯云自媒体分享计划,分享自作者个人站点/博客。
原始发表:2021-03-06 ,如有侵权请联系 cloudcommunity@tencent.com 删除

本文分享自 作者个人站点/博客 前往查看

如有侵权,请联系 cloudcommunity@tencent.com 删除。

本文参与 腾讯云自媒体分享计划  ,欢迎热爱写作的你一起参与!

评论
登录后参与评论
0 条评论
热度
最新
推荐阅读
目录
  • Before the Management Review
领券
问题归档专栏文章快讯文章归档关键词归档开发者手册归档开发者手册 Section 归档