EconPapers    
Economics at your fingertips  
 

Integration possibilities of ISO 9001:2008 quality management system with ISO 27001:2010 information security management system

Josip Britvic (), Anita Prelas Kovacevic () and Monika Cingel ()
Additional contact information
Josip Britvic: Virovitica college
Anita Prelas Kovacevic: Virovitica college
Monika Cingel: Virovitica college

Economy of eastern Croatia yesterday, today, tommorow, 2013, vol. 2, 368-373

Abstract: The requirements of customers, users of services and actions of competitors require companies to constantly raise the level of quality of products and / or services as well as the quality level and functioning of organization. Other requirements like those arising from legislation, requirements of local communities and environment also require organizations to adapt. To help organizations meet all these requirements they can use existing tools such as ISO 9001, ISO 14001, ISO 27001 and other standards. By integrating multiple ISO standards into one integrated system it's possible to meet a wider range of requirements. The paper analyzes the possibility to integrate the ISO 9001:2008 quality management system with ISO 27001:2010 Information Security Management System and application possibilities of the integrated system in practice. Organization with implemented quality management system proves that its quality management system complies with the requirements of ISO 9001:2008. Thus the risk of uncertainty in customers towards the quality of products or services is reduced, so organizations are increasingly seeking to obtain this certification. As some organizations require not only the quality of products and services, but also the safety of these, ISO 9001:2008 is a great start for organizations towards implementation of other ISO standards, in this case the ISO 27001:2010. The purpose of ISO 27001:2010 is to show customers that information security in the organization is carried out in the best possible way and to gain their trust. Therefore we can say that the ISO 27001:2010 means for information security the same thing as ISO 9001:2008 means for quality management system. In this paper will be shown how to implement the standards individually and whether there is the possibility of integrating these standards.

Keywords: ISO 9001; ISO 27001; integrated systems; information security; quality management (search for similar items in EconPapers)
Date: 2013
References: Add references at CitEc
Citations:

Downloads: (external link)
http://www.efos.unios.hr/repec/osi/eecytt/PDF/Econ ... row02/eecytt0242.pdf

Related works:
This item may be available elsewhere in EconPapers: Search for items with the same title.

Export reference: BibTeX RIS (EndNote, ProCite, RefMan) HTML/Text

Persistent link: https://EconPapers.repec.org/RePEc:osi:eecytt:v:2:y:2013:p:368-373

Access Statistics for this article

More articles in Economy of eastern Croatia yesterday, today, tommorow from Josip Juraj Strossmayer University of Osijek, Faculty of Economics, Croatia Contact information at EDIRC.
Bibliographic data for series maintained by Hrvoje Serdarusic, PhD ( this e-mail address is bad, please contact ).

 
Page updated 2025-03-19
Handle: RePEc:osi:eecytt:v:2:y:2013:p:368-373