Scope Template:
1. Scope
The Information Security Management System applies to and operations of XXXX Private Limited
and people supporting its operations. It also applies to support functions like Human Resources,
General Administration, Accounts and System Administration which supports the people,
technology and process at the Organization.
The Scope of Information Security Management System is
SCOPE MODEL 1:
“"Design & Development of Application Software & Database for ecommerce, Providing
Services and Solutions in Business Process Outsourcing, Transcription in Healthcare, E
publishing, Document Management, E Commerce and IT Staffing”
SCOPE MODEL 2:
“Design, Development, Testing, Delivery and Support of Software and
Hardware Products and Services”.
It covers the management, operation and maintenance of the assets, information systems and
business activities that support these services in accordance with the Statement of Applicability.
1. Locations and Boundaries
a. Locations – Work site at Chennai, Tamilnadu State, India.
b. Boundary is extended for Core activity to the contractor as “work at
home” basis.
c. Logical Perimeter-Virtual Network Boundary.
The information security management system would govern the networks and technologies
at above locations.
NATURE OF WORK
d. Processes and Services (NATURE OF WORK)
ISMS is covering the following processes
● System Administration
● Top Management
● Human Resources Development
● Sales and Marketing
● Tech Support
● Finance and Accounts
e. Interfaces and dependencies
S No Activities Managed by
1. Building Lease Admin
2. Financial and Accounting Application Finance and Accounts
3. Office Security Services Admin
4. Facility Maintenance Services Admin
5. Fire Safety Equipment Maintenance Admin
6. UPS/AC Maintenance Services Admin
7. Payroll Process HR & Finance
8. Employee Background Verification HR & Third Party
9. Internet Services Sys Admin
S No Activities Managed by
10. Network and Computer Equipment Maintenance & Support Sys Admin
11. E-mail Services Sys Admin
Second model:
Interfaces and dependencies
Interface and dependencies between xxxx and other organizations are given below
SERVICE
S.NO SERVICES PROVIDED TO NMSPL
MANAGED BY
1. Coding and Development Development Team
2. Release and Configuration Development Team
Testing Services and Quality Assurance Verification and
3.
Validation Team
Delivery and Deployment Services Release
4.
management
5. Installation process Customer Support
6. Post Implementation and Customer Support Customer support
7. Building Lease Admin
8. Asset Insurance Admin
Financial and Accounting Application Finance and
9.
Accounts
10. Office Security Services Admin
11. Facility Maintenance Services Admin
12. Fire Safety Equipment Maintenance Admin
13. AC Maintenance Services Admin
14. UPS Maintenance Services Admin
SERVICE
S.NO SERVICES PROVIDED TO NMSPL
MANAGED BY
15. RF Card Access Control Sys Admin
16. Bio-Metric Access Sys Admin
17. Payroll Process HR
18. Employee Background Verification HR
19. Internet Services Sys Admin
20. Network and Computer Equipment’s Maintenance & Support Sys Admin
21. Telecommunications Services Sys Admin
22. E-mail Services Sys Admin
23. ID Card Access Admin
24. Bio-Metric Access Sys Admin
25. Payroll Process HR
26. Employee Background Verification HR
27. Internet Services Sys Admin
28. Network and Computer Equipment Maintenance & Support Sys Admin
29. Telecommunications Services Sys Admin