Title:Vpeljava iso 27001 v Skupini LOTRIČ Metrology
Authors:ID Meglič, Tamara (Author)
ID Brezavšček, Alenka (Mentor) More about this mentor... New window
Files:.pdf VS_Meglic_Tamara_2023.pdf (2,24 MB)
MD5: F2E4B8DC93F76A639F9C296F2E7DE7F3
Work type:Bachelor thesis/paper
Typology:2.11 - Undergraduate Thesis
Organization:FOV - Faculty of Organizational Sciences in Kranj
Abstract:Uvod: V diplomskem delu smo v prvi fazi raziskali dejansko stanje informacijske varnosti podjetja. Analiza stanja nam je pokazala, na katerih področjih so potrebne izboljšave. Osredotočili smo se na varnostno politiko informacijskega sistema in vpeljavo ISO/IEC 27001:2017. Namen: Zagotavljanje informacijske varnosti je za Skupino LOTRIČ Metrology ključnega pomena, zato je bistveno, da k obravnavani tematiki pristopimo celovito in sistematično. Standard ISO/IEC 27001:2017 je odlično orodje za pravilen in učinkovit pristop k izboljšanju stanja informacijske varnosti Skupine LOTRIČ Metrology, zato smo pristopili k implementaciji le-tega. Metode dela: V sklopu diplomske naloge smo naredili prve korake k vpeljavi standarda ISO/IEC 27001:2017 in pridobitvi certifikata. Dodobra smo preučili dejansko stanje varnostne politike. V raziskavo smo vključili osebe s ključnimi znanji in izkušnjami. Skupaj smo ustvarili primerjalno tabelo, s katero smo ugotovili, v kateri del poslovnika je smiselno umestiti zahteve standarda. V nadaljevanju smo naredili plan vpeljave ter vprašalnik za notranjo presojo. Rezultati: Vpeljava standarda ISO/IEC 27001:2017 je velik doprinos skupini LOTRIČ Metrology, predvsem za nenehno izpopolnjevanje in razvoj. Redno se bo izvajalo tudi preverjanje uresničevanja zahtev standarda, kar bo pripomoglo, da bo skupina LOTRIČ Metrology živela s strategijo vpeljane varnostne politike. Razprava in zaključek: Diplomska naloga prispeva k analitiki stanja in soodloča o izboru pravilnih zahtev pri vpeljavi standarda ISO/IEC 27001:2017.
Keywords:informacijska varnost, standardi, ISO 27001, certificiranje
Place of publishing:Maribor
Year of publishing:2023
PID:20.500.12556/DKUM-86054 New window
COBISS.SI-ID:177215747 New window
Publication date in DKUM:13.12.2023
MEGLIČ, Tamara, 2023, Vpeljava iso 27001 v Skupini LOTRIČ Metrology [online]. Bachelor’s thesis. Maribor. [Accessed 20 January 2025]. Retrieved from: https://dk.um.si/IzpisGradiva.php?lang=eng&id=86054
License:CC BY-NC-ND 4.0, Creative Commons Attribution-NonCommercial-NoDerivatives 4.0 International
Description:The most restrictive Creative Commons license. This only allows people to download and share the work for no commercial gain and for no other purposes.
Licensing start date:02.10.2023

Secondary language

Title:Implementation of iso 27001 in LOTRIČ Metrology Group
Abstract:Introduction: In the first phase of the thesis, we investigated the actual state of information security in the company. The analysis of the situation revealed us in whitch areas improvements are needed.. We focused on the information system security policy and the implementation of ISO/IEC 27001:2017. Purpose: Ensuring information security is of key importance to LOTRIČ Metrology Group, and it is therefore crucial that we approach the subject in a comprehensive and systematic manner. The ISO/IEC 27001:2017 standard is an excellent tool for a correct and effective approach to improving the information security situation of LOTRIČ Metrology Group, and we have therefore taken the initiative to implement it. Works methods: As part of the thesis, we took the first steps towards the implementation of the ISO/IEC 27001:2017 standard and obtaining the certificate. We have further examined the actual state of security policy. We included people with key skills and experience in the research. Together, we created a comparison table to determine in which part of the rules of procedure it makes sense to include the requirements of the standard. We then created an implementation plan and an internal audit questionnaire. Results: The implementation of the ISO/IEC 27001:2017 standard is a great contribution to the LOTRIČ Metrology Group, especially for continuous improvement and development. Regular verification of the implementation of the requirements of the standard will also be carried out, which will help the LOTRIČ Metrology Group to live up to the strategy of the implemented security policy. Discussion and conclusion: The thesis contributes to the analysis of the situation and co-decides on the selection of the correct requirements for the implementation of the ISO/IEC 27001:2017 standard.
Keywords:information security, standards, ISO 27001, certification


Logos of partners University of Maribor University of Ljubljana University of Primorska University of Nova Gorica