| | SLO | ENG | Cookies and privacy

Bigger font | Smaller font

Show document Help

Title:Presoja skladnosti s standardom ISO/IEC 27001:2022 v srednje velikem proizvodnem podjetju
Authors:ID Kristanc, Ana (Author)
ID Brezavšček, Alenka (Mentor) More about this mentor... New window
ID Rozman, Matjaž (Comentor)
Files:.pdf UN_Kristanc_Ana_2025.pdf (922,66 KB)
MD5: 4F7E28879432E270E681FC76E431BBC9
 
Language:Slovenian
Work type:Bachelor thesis/paper
Typology:2.11 - Undergraduate Thesis
Organization:FOV - Faculty of Organizational Sciences in Kranj
Abstract:Diplomsko delo obravnava presojo skladnosti srednje velikega proizvodnega podjetja z zahtevami standarda ISO/IEC 27001:2022. Namen dela je bil ugotoviti, v kolikšni meri je podjetje že uskladilo svoje procese z zahtevami sistema upravljanja informacijske varnosti SUIV (angl. Information Security Managment System – ISMS), ter prepoznati področja, ki zahtevajo izboljšave. Presoja je bila izvedena s pomočjo vprašalnika, ki zajema klavzule 4–10 in kontrolne ukrepe iz Priloge A standarda ISO/IEC 27001:2022. Analiza je pokazala, da podjetje že uporablja posamezne varnostne ukrepe, vendar ti niso sistematično dokumentirani niti formalizirani. Pomanjkljivosti se kažejo predvsem pri obvladovanju tveganj, politiki informacijske varnosti in vlogi vodstva pri formalni zavezanosti k izpolnjevanju zahtev standarda, ki ga obravnavamo. Na podlagi ugotovitev so podani konkretni predlogi za izboljšave.
Keywords:informacijska varnost, sistem upravljanja informacijske varnosti, SUIV, ISO/IEC 27001:2022, presoja skladnosti, proizvodno podjetje
Place of publishing:Kranj
Year of publishing:2025
PID:20.500.12556/DKUM-95639 New window
COBISS.SI-ID:262809859 New window
Publication date in DKUM:23.12.2025
Views:207
Downloads:60
Metadata:XML DC-XML DC-RDF
Categories:FOV
:
Copy citation
  
Average score:(0 votes)
Your score:Voting is allowed only for logged in users.
Share:Bookmark and Share



Hover the mouse pointer over a document title to show the abstract or click on the title to get all document metadata.

Licences

License:CC BY-NC-ND 4.0, Creative Commons Attribution-NonCommercial-NoDerivatives 4.0 International
Link:http://creativecommons.org/licenses/by-nc-nd/4.0/
Description:The most restrictive Creative Commons license. This only allows people to download and share the work for no commercial gain and for no other purposes.
Licensing start date:03.10.2025

Secondary language

Language:English
Title:Assessment of compliance with the ISO/IEC 27001:2022 standard in a medium-sized production company
Abstract:The thesis examines the compliance of a medium-sized production company with the requirements of the ISO/IEC 27001:2022 standard. The purpose of the task was to determine the extent to which the company has already aligned its processes with the requirements of the information security management system. Information Security Management System (ISMS) and identify areas that require improvement. The assessment was conducted using a questionnaire that covers clauses 4–10 and control measures from Annex A of the ISO/IEC 27001:2022 standard. Analysis of the results showed that the company already uses individual security measures, but these are not systematically documented or formalized. The shortcomings are mainly evident in risk management, information security policy, and the role of management in formally committing to meeting the requirements of the standard we are discussing. Based on the findings, specific proposals for improvements are provided.
Keywords:information security, information security management system, ISMS, ISO/IEC 27001:2022, compliance assessment, production company


Comments

Leave comment

You must log in to leave a comment.

Comments (0)
0 - 0 / 0
 
There are no comments!

Back
Logos of partners University of Maribor University of Ljubljana University of Primorska University of Nova Gorica