IT, BPO firms rush for ISO-27001 certification
Published on Thu, Aug 17, 2006 at 08:52 , Updated at Thu, Aug 17, 2006 at 09:46
Source : Moneycontrol.com
| ads by google |
In a bid to better manage risks relating to information security apart from seeking to retain their customer confidence, IT and BPO firms are seen rushing to get ISO-27001 certification. The IS0-27001 is the highest certification standard available from the International Standards Organisation and is adopted from the BS 7799 standards of the British Standards Institute (BSI). ISO-27001 is awarded for effective e-security and physical security measures. By going in for this certification, an organisation can receive an independent assessment of their Information Security Management System (ISMS). At present, very few IT and BPO firms in India are ISO-27001 compliant. Those certified include Satyam Computers, Keane India, Accenture, Cranes Software, Aztecsoft, Microland and PSI Data Systems among others. Mr Sivaram Sivasubramanian, programme manager, ICT Management Systems at SAI Global Ltd, an Australian security auditor, said IT and BPO companies are increasingly going in for ISO-27001 certification not only to retain their customer confidence, but also to satisfy the internal customer confidence.
Win Confidence ISO-27001 addresses the security requirements of over 130 controls, of which about 4-5 are mandatory while the remaining are optional. The ISO 27001 outlines the rules for defining, establishing, implementing, operating, reviewing, monitoring and improving a documented ISMS within the context of an organisation's overall business risks. The standard is designed to ensure the selection of adequate and proportionate security controls that protect information assets of clients. Compliance needs The ISO-27001 certification helps companies to comply with multiple legislations and regulations such as HIPAA, SOX, Safe Harbour Practice among others. It also helps companies to win confidence internally especially among employees, who are now wanting employers to maintain secrecy over their personal data, he said. "Information security requires robust risk management, a comprehensive awareness program and structured BCP (Business Continuity Plan) in place," said Mr Sukant Srivastava, Managing Director, Keane India. "Being one of the first five companies to achieve the ISO 27001 certification for information security, Keane's Information security needs are primarily driven by unique requirements of its customers for safeguarding their data," he said. "Besides, Keane is equally sensitive on the end user implications, which not only add an extra level of trust with clients but also helps in safeguarding the interests of consumers/customers who finally use the applications," Mr Srivastava added. Taken from Business Line |
Messages on Business Talk
Other comments
Nano finds new home in Gujarat; Ratan Tata, Guj CM ink pact
Tata Motors has signed an agreement with the Gujarat government for the Nano Plant. Nano will manufacture 2.5-3.5 l...
in Business Talk - MMB Messenger at 07-Oct-08 11:16
Barclays, RBS in talks with European banks for funding
Barclays and Royal Bank of Scotland (RBS) are in talks with European banks and the government for around USD 79 bil...
in Business Talk - MMB Messenger at 07-Oct-08 06:47
Rate this article
News
15-09 Will Lehman Bros' bankruptcy hit In...
15-09 Satyam aims to strengthen presence ...
Notices
01-10 Satyam Computer Services Ltd has in...
01-10 Satyam Computer Services Ltd has in...
Expert Advice
04-10 Investors wary of volatile mkts, ea...
03-10 Hold Satyam, says Mohindar...
Management Interviews
18-07 Satyam well placed to deliver FY09 ...
21-04 Satyam guides 17-19% EPS growth for...
Brokerage Reports
26-09 Buy Satyam Computer above Rs 332: I...
15-09 Buy Satyam, target of Rs 504: KRCho...
Technical Calls
No Technical Calls on Satyam
Chat
Ramesh Damani
Member BSE ,
(08 Oct- 16:30hrs)
What's good investment now?
Mr Damani's chat is postponed to Wednesday, Oct 8 at 4.30pm
Poll
Newsletter
Keep in touch with News day & night. Subscribe to:
Mobile Services
Get news on the move SMS to 52622
- SMS M for Market News
- SMS B for Latest Business News
- SMS S (stock name) for latest news




Offline
Overseas customers before outsourcing their critical functions to destinations like India are looking at the credibility of the vendors in terms of protecting their intellectual property and maintaining data privacy among others. A certification like ISO-27001 would help vendors to instil confidence among the clients, Mr Sivaram said. 



