Reestructuración de procesos misionales del sistema de gestión de calidad de Contacto Solutions S.A.S. integrando controles relevantes en gestión de seguridad de la información
Fecha
Autores
Autor corporativo
Título de la revista
ISSN de la revista
Título del volumen
Editor
Compartir
Director
Altmetric
Resumen
Initially in this project from the information security management approach, the current context (both internal and external) of Contacto Solutions SAS is identified, later addressing the analysis of its Quality Management System with emphasis on the process mission of the same, the Collection Management process. Based on the information security risk analysis, assessment and treatment methodology created in this project, the identification of this type of risk is carried out for the collection management process, which is the missionary process of the Collection System. Quality Management of Contacto Solutions SAS, this being the tool that allows determining and establishing the relevant controls regarding information security management, taking as a reference the one hundred fourteen (114) information security controls established in the "Annex A. Objectives and reference controls ”of the“ NTCISO / IEC 27001: 2013 Standard, Information Technology. Security techniques. Information security management systems. Requirements”. Likewise, the integration is carried out through the defined strategies (the consolidation, documentation and implementation of policies, standards, procedures and other mechanisms) of the information security controls established as relevant for Contacto Solutions S.A.S. to the missionary process of its Quality Management System (QMS), carrying out the restructuring of the processes involved in a controlled way according to the initial analysis carried out, preventing adverse impacts on the integrity of the Quality Management System.