
Typically, this question is twofold; which assets to include and the depth or granularity. In this blog, we will look at granularity.

In order to meet the requirements of ‘Asset management’ A.8 from Annex A of ISO 27001, it is necessary to identify organisational assets and define protection

‘How do we approach asset identification within our information security risk assessment?’. This blog examines which assets or asset types to include.
URM can offer a host of consultancy services to improve your DP policies, privacy notices, DPIAs ROPAs, privacy notices, data retention schedules and training programmes etc.
By attending URM’s online BCS Foundation Certificate in Data Protection course, you will gain valuable insights into the key aspects of current DP legislation including rights of data subjects and data controller obligations.
URM can help you get ISO 27001 certification