Module 2: Defining Your Domain

Scope Statement Craft

Template
20 min
+75 XP

ISMS Scope Statement Template

Document Control

VersionDateAuthorChanges
1.0[DATE][NAME]Initial version

1. Organization Overview

Organization Name: [Your Company]

Business Description: [Brief description of what your organization does]

Industry Sector: [e.g., Technology, Healthcare, Finance]


2. ISMS Scope Definition

2.1 Organizational Scope

The ISMS applies to the following organizational units:

  • [Department/Business Unit 1]
  • [Department/Business Unit 2]
  • [Department/Business Unit 3]

2.2 Physical Locations

LocationAddressTypeIn Scope
HQ[Address]OfficeYes
DC1[Address]Data CenterYes
RemoteVariousHome OfficeYes

2.3 Information Systems

SystemDescriptionIn Scope
[System 1][Description]Yes
[System 2][Description]Yes

2.4 Processes

The following processes are within scope:

  1. [Process 1]
  2. [Process 2]
  3. [Process 3]

3. Exclusions

Excluded ItemJustification
[Item][Reason]

4. Interfaces and Dependencies

External PartyInterfaceData Exchanged
[Party][API/Network][Data type]

5. Scope Statement

[Organization Name]'s ISMS scope encompasses all information processing activities related to [core business function] at [locations], including [key systems] supporting [X] employees and [Y] customers.


Approval

RoleNameSignatureDate
ISMS Owner
Management Rep

Next Lesson: Leadership requirements for your ISMS.

Complete this lesson

Earn +75 XP and progress to the next lesson