Project Title: Evaluate Use of ISO 27001 & 9000 Compliance for Cybersecurity Management

CapSource Technologies

Details
Project Title Evaluate Use of ISO 27001 & 9000 Compliance for Cybersecurity Management
Project Topics Cybersecurity Data Management Market Research Product Design & Development Research & Development
Skills & Expertise
Project Synopsis: Challenge/Opportunity
This project aims to assist CapSource in achieving compliance with ISO 27001 and ISO 9000 standards to enhance its cybersecurity management system and overall quality management framework. The goal is to ensure that CapSource meets the highest standards of information security and quality management, thereby improving its service offerings and client trust. CapSource is committed to maintaining high standards of cybersecurity and quality management. However, achieving and maintaining compliance with ISO 27001 (Information Security Management) and ISO 9000 (Quality Management) standards is a complex and resource-intensive process. This project offers an opportunity for students to work on a real-world problem, helping CapSource to identify gaps in its current systems, develop strategies to address these gaps, and implement effective solutions. The ultimate goal is to enhance the company's cybersecurity posture and quality management practices, ensuring compliance with international standards.
Project Synopsis: Activities/Actions Required
1. Initial Assessment and Gap Analysis:
  • Review current cybersecurity and quality management practices at CapSource.
  • Conduct a gap analysis to identify areas that do not meet ISO 27001 and ISO 9000 standards.
2. Develop Compliance Roadmap:
  • Create a detailed roadmap for achieving ISO 27001 and ISO 9000 compliance.
  • Prioritize actions based on risk assessment and resource availability.
3. Policy and Procedure Development:
  • Develop and/or update information security policies and procedures to align with ISO 27001 requirements.
  • Update quality management policies and procedures to meet ISO 9000 standards.
4. Implementation of Controls:
  • Implement technical and administrative controls as required by ISO 27001.
  • Ensure quality management processes are in place and effective.
5. Training and Awareness:
  • Develop and deliver training programs for staff on new policies and procedures.
  • Conduct awareness sessions on the importance of cybersecurity and quality management.
6. Internal Audit and Continuous Improvement:
  • Conduct internal audits to ensure compliance with ISO standards.
  • Develop a continuous improvement plan to maintain compliance and address emerging risks.
Project Synopsis: Expected Results
A comprehensive gap analysis report identifying areas of non-compliance.
A detailed compliance roadmap outlining the steps needed to achieve ISO 27001 and ISO 9000 standards.
Updated policies and procedures that align with ISO requirements.
Successful implementation of necessary controls to enhance cybersecurity and quality management.
Increased staff awareness and understanding of cybersecurity and quality management practices.
A sustainable internal audit and continuous improvement process to maintain ongoing compliance.

Project Timeline

Touchpoints & Assignments Date Type

Program Created

Jan 18 2024 Event

Proposal Application Deadline

Feb 02 2024, 00:46 AM Submission Required

Students Onboarded & Assigned Teams

Feb 05 2024 Event

Student Temperature Check

Feb 14 2024 Evaluation

Student Temperature Check

Feb 28 2024 Evaluation

Project Proposal Deadline

Mar 01 2024 Event

Student Post-Engagement Self-Assessment Form

Mar 05 2024 Evaluation

Student Temperature Check

Mar 05 2024 Evaluation

Projects Finalized

Mar 08 2024 Event

Finalize Project Charter

Mar 08 2024, 00:46 AM Submission Required

Official Program Launch

Mar 25 2024 Submission Required

Projects Complete!

May 10 2024 Event

Program Managers

Name Organization

Teams

Team Name  Project Name  Team Members 
No Teams Available