Home

SRAC Menu EN

  • EN
  • SERVICES

    Menu Block - Servicii EN

    Management System Certification
    • ISO 9001 - Quality
    • ISO 14001 - Environment
    • ISO 45001 - Occupational Health and Safety
    • ISO 27001 - Information Security
    • ISO 50001 - Energy
    • ISO 13485 - Quality for Medical Devices
    • ISO 37001 - Anti-bribery management system
    • ISO 22301 - Business Continuity Management
    • ISO 20000-1 - Service Management
    • ISO 27701 - Privacy information management
    • ISO 37301 - Compliance management
    • ISO 39001 - Road traffic safety (RTS) management
    • ISO 17100 - Translation services management
    • ISO 21001 - Educational organizations management
    • ISO 56001 and SR 13572 - Innovation management
    • ISO 41001 - Facility management
    Product Certification (including CE marking)
    • Reg. (UE) no. 305/2011 - Construction products
    • Directive 2014/31/EU - Non-Automatic Weighing Instruments
    • Directive 2014/33/EU - Lifts
    • Directive 2006/42/EC - Machinery
    Inspection and Food Safety Certifications
    • ISO 22000 - Food safety
    • FSSC 22000 - Food safety (food products and packaging)
    • Inspection and certification of organic products (ECO)
    Sustainability and Governance
    • ESG (environment-social-governance)
    • ISCC - International Sustainability and Carbon Certification
    • ISO 14064 - Verification and validation of GHG statements
    • ISO 14067 - Carbon footprint of products
    • ISO 14068 - Verification of carbon neutrality claims
    • Reg. (UE) nr. 2018/2067 - Verification of GHG reports
    • Reg. (UE) nr. 1221/2013 - EMAS Verification
    • ISO 20400 - Sustainable procurement certification
    Other Certifications
    • SA8000 - Social Responsability
    • Sedex SMETA Audit
    • ISO 28000 - Security Management System for the Supply Chain
    • ISO 22716 - Cosmetics - Good Manufacturing Practices (GMP)
    • SR EN 15224 - Health Care Services
    • BS 7499 - Security services on static sites or on a patrol basis
    • Reg. (UE) no. 333/2011 - Metal Waste
    • Reg. (UE) no. 1179/2012 - Glass Cullet Waste
    • Reg. (UE) no. 715/2013 - Copper Waste
    • ISO 31000 - Risk Management
    Training
    Inquiry form
    Stay
  • ABOUT US

    block-despre-noi-en

    History The most important certification body in Romania
    Accreditations SRAC has the highest brand recognition and certificates
    Partnerships SRAC is a partner of IQNet - The International Certification Network
    Policies Policies and commitments SRAC
    Events Promoter of quality culture in Romania
    Publications We lead the way to success
    Our Team SRAC team - Experts choose the leader!
    Careers Join our team SRAC
    Feedback Opinions, suggestions and complaints
    Stay
  • INFO

    block-informatii-en

    News SRAC has established itself as the market leader in customer portfolio appearing the largest Romanian
    FAQ Find answers to common questions and get additional help
    Certification documents To meet the needs expressed by our clients
    Useful links Links and addresses that can be useful
    Stay
  • CLIENTS

    meniu-clienti-en

    Find out more about SRAC clients (click here)

    Stay
  • INQUIRY FORM
  • CONTACT

Search form

  • RO /
  • EN
MENU

ISO/IEC 27001 - INFORMATION SECURITY MANAGEMENT SYSTEM

Reference standard

ISO/IEC 27001:2018 is based on the following principles which define the information security: confidentiality, integrity and availability of information. The standard ensures a long-term security solution, for it is based on the implementation of security policies, procedures and methods aimed at protecting the organization information and assets. By reducing at a maximum level the residual business risks is guaranteed that the management system is functional and meet the standards of the company and of the customers and observe the legislation in force.
 

Advantages of the information security management system certification

  • credibility, integrity and confidence for clients, employees, partners and owners that the company information and information systems are protected
  • providing the evidence to the authorities that the laws and regulations in force are observed
  • ensuring a business continuity plan and a plan for the recovery from disaster, tailored to the organization needs
  • increasing the productivity by reducing the operational risks and a better availability in running the information systems
  • differentiating from other competitors within the tendering activities in the public sector or when concluding commercial contracts, that involve the access to confidential information or even state secrets.
 

Why SRAC

 
SRAC is accredited for the occupational health and safety management systems certification by:
  • RENAR - The national accreditation body (Certificate SM 004) in compliance with ISO / CEI 27001:2013 reference standard.
 
SRAC certifications are recognized at national and international level through SRAC partnership in IQNet (The International Certification Network).
To that extent, the organizations certified by SRAC receive, together with SRAC Certificate also the IQNet Certificate, without any additional costs.  
 
Upon the certification process successfully completed, SRAC certified organizations:
  • have the right to use SRAC and IQNet conformity marks for advertising purposes;
  • are regularly informed on the evolutions in the quality and certification areas, by accessing SRAC Website, events organized by SRAC.

 

Why certification

Every successful organization is aware that:
  • the information and processing support, the systems and computer networks are some of the most important assets for the organization. Nowadays, these are more and more threatened by a multitude of factors, including computer assisted frauds, computer viruses, hacking, DoS, espionage, sabotage, vandalism, fire or flood;
  • the requirements and expectations of the clients are now also directed towards the security of the information processed by suppliers and the major businesses will take this into consideration.
For every organization willing to join different partnerships, to maintain and extend its businesses it is necessary the implementation and certification of an information security management system – as part of the overall management system, based on the approach of security risk assessment aimed at establishing, implementing, managing, monitoring, maintaining and improving the information security. By the means of certification is ensured the application of the best practices for the planning, installation, configuration, use and maintenance of the information systems.

Do you want to know the costs of certification?

Please fill in the online INQUIRY and you will receive our answer in the shortest time possible or please contact Sales Department: sales@srac.ro



INQUIRY FORM
  • Certificarea ISO 28000 se adreseaza operatorilor din lantul de aprovizionare pentru o buna gestionare a proceselor de securitate.
  • ISO 17100 prevede cerinte pentru procesele de baza, resursele si alte aspecte necesare pentru furnizarea unui serviciu de traducere de calitate care sa respecte specificatiile aplicabile.
  • ISO 56001 si SR 13572 sunt standarde pentru managementul inovarii ce ofera o abordare sistemica a integrării inovării la toate nivelurile unei organizații, o capacitatea sporita de gestionare a incertitudinii, costuri reduse si o rentabilitate mai mare.
  • ISO 27701 protejeaza datele cu caracter personal si vine in sprijinul organizatiilor pentru ca acestea sa poata gestiona in siguranta informatiile confidentiale si sa se poata alinia la cerintele legale.
  • ISO 21001 ajuta furnizorii de educatie sa raspunda mai bine nevoilor si asteptarilor cursantilor si ale altor beneficiari si sa obtina o mai mare credibilitate.
  • ISCC este un sistem international, eficace, practic si transparent pentru certificarea biomasei si bioenergiei.
  • Verificarea asertiunii de o terta parte este cea mai simpla forma de a demonstra veridicitatea declaratiilor facute in domeniul mediului, sociel si al guvernantei.
  • ISO 37301 permite organizatiilor care urmaresc succesul pe termen lung sa stabileasca si sa mentina o cultura a conformarii, luand in considerare nevoile si asteptarile partilor interesate.
  • ISO 31000 stabilește un număr de principii care trebuie respectate pentru a avea un management eficace al riscului.
  • ISO 9001 are in vedere orientarea catre client si evaluarea satisfactiei acestuia precum si angajamentul top managementului pentru o imbunatatire continua.
  • Certificarea ISO 14064: verificarea / validarea declaratiilor aferente GES intocmite de organizatii
  • ISO 39001 permite unei organizatii care interactioneaza cu sistemul de trafic rutier sa reduca decesele si rănirile grave datorate accidentelor din traficul rutier pe care aceasta le poate influenta.
  • ISO 14001 solicita unei organizatii sa declare ceea ce face in privinta controlarii si reducerii impactului sau asupra mediului inconjurator.
  • ISO 45001 reprezinta un model de lucru pentru organizatiile care doresc un control mai bun asupra riscurilor profesionale.
  • ISO/IEC 27001 are la baza confidentialitatea, integritatea si disponibilitatea informatiei. Prin certificare se asigura ca s-au aplicat cele mai bune practici de planificare, instalare, configurare, utilizare si intretinere a sistemelor informationale.
  • ISO 50001 creaza posibilitatea ca o organizatie sa urmeze o abordare sistematica pentru a obtine imbunatatirea continua a performantei energetice, care sa includa eficienta energetica, modul de utilizare a energiei si consumul de energie.
  • ISO 13485 este standardul cel mai acceptat international pentru producatorii de aparatura medicala care trebuie sa demonstreze capacitatea de a furniza dispozitive medicale si serviciile aferente care in mod constant satisfac cerintele clientului si cerintele de reglementare aplicabile.
  • ISO/IEC 20000 specifica cerintele pentru ca o organizatie sa stabileasca, implementeze, intretina si sa imbunatateasca continuu un sistem de management al serviciilor (SMS).
  • ISO 37001 - standard pentru stabilirea, implementarea, mentinerea si imbunatatirea unui sistem de management anti-mita, proiectat pentru a impune o cultura anti-mita intr-o organizatie si pentru a implementa controalele adecvate.
     
  • ISO 22000 asigura siguranta alimentelor de-a lungul filierei agroalimentare pana la punctul final de consum.
  • FSSC 22000 este destinat producatorilor de alimente care trebuie sa dovedeasca conformitatea cu ISO 22000, ISO/TS 22002-1 sau ISO/TS 22002-4 si criterii suplimentare stabilite de Fundatia FSSC
  • Pentru a putea vinde sub eticheta de produce ecologice/bio/organice este nevoie de certificare ECO. Agricultura ecologica reprezinta un sistem de gestiune agricola si productie alimentara.
  • SA8000 se bazeaza pe principiile normelor internationale de munca si are ca scop imbunatatirea conditiilor de munca din intreaga lume.
  • ISO 22301 este standardul care ajuta managerii in luarea unor masuri eficiente si a unei recuperari mai rapide in cazul unor potentiale dezastre, astfel incat impactul acestora asupra organizatiei, a angajatilor sau liniei de productie sa fie redus substantial.
  • Sedex SMETA (Sedex Members Ethical Trade Audit)
  • ISO 22716 - Cosmetice. Bune practici de fabricatie (BPF), standard ce se adreseaza tuturor organizatiilor care au in domeniul de activitate productie, control, depozitare si expediere produse cosmetice
  • SR EN 15224 include cerinte concrete referioare la siguranta pacientului si managementul riscurilor clinice in procesele de planificare, realizare si gestionare.
  • BS 7499 ofera cele mai bune practici si recomandari pentru operarea si gestionarea organizatiilor care presteaza servicii de paza si securitate statica.
  • EMAS este instrumentul european de management de mediu si audit.
  • Reg. (UE) nr. 333/2011 este destinat organizatiilor care au ca domeniu de activitate colectarea, reciclarea si tratarea deseurilor metalice.
  • Reg. (UE) nr. 715/2013 de stabilire a criteriilor de determinare a conditiilor in care deseurile de cupru nu mai constituie deseuri.
  • Reg. (UE) nr. 1179/2012 determina conditiile in care cioburile de sticla inceteaza sa mai fie deseuri.
  • ISO 14067 - Verificarea amprentei de carbon a produselor
  • ISO 41001 - Sisteme de management al facilitatilor
  • ISO 20400 - Certificarea achizitiilor sustenabile
  • ETICHETAREA ECOLOGICA DE TIP I (ECOLABEL SRAC) CONFORM EN ISO 14024:2018
  • Certificarea de produs inseamna evaluarea si atestarea conformitatii de catre un organism de certificare impartial
  • Certificarea de produs inseamna evaluarea si atestarea conformitatii de catre un organism de certificare impartial
  • Reg. (UE) 2018/2067 - Verificare rapoarte GES
  • ISO 14068-1:2023 cerinte pentru organizatiile care urmaresc neutralitatea carbonului pentru produse, servicii sau evenimente.
inquiry form  |   about us  |   accreditations  |   notifications  |   events  |   clients  |   intranet  |   useful links  |   feedback