ISO 27001
(มาตรฐาน ISO 27001)
Definition
ISO 27001 (มาตรฐาน ISO 27001) Hard Skill
ISO 27001 is an international standard for managing information security. It specifies requirements for establishing, implementing, maintaining, and continually improving an Information Security Management System (ISMS) to protect sensitive information.
Expertise Level
Level 1
Basic
1. Understands the fundamental concepts and objectives of ISO 27001.
2. Recognizes the importance of information security and ISMS.
3. Familiar with the general structure and main clauses of the standard.
Level 2
Intermediate
1. Can participate in the implementation of ISMS controls and processes.
2. Assists in risk assessment and treatment according to ISO 27001 guidelines.
3. Understands how to maintain documentation and evidence for compliance.
Level 3
Advanced
1. Leads the development, implementation, and continual improvement of the ISMS.
2. Conducts comprehensive risk assessments and designs mitigation strategies.
3. Manages internal audits, prepares for certification audits, and ensures full compliance.
Ministry of Higher Education
Science, Research and Innovation
Call Center 1313
328 Si Ayutthaya Rd., Thung Phaya Thai, Ratchathewi, Bangkok 10400 Tel. 02-610-5200 Fax. 02-354-5524.
Copyright © 2025 Skill Mapping.
This website is an official government agency site under the Office of the Permanent Secretary, Ministry of Higher Education, Science, Research and Innovation. It is established with the aim of improving the quality of management in the Office of the Permanent Secretary to meet public sector management standards, and is not intended for profit. If you find any information on this website that infringes intellectual property rights, please notify us so we can resolve the issue as soon as possible.