Clause 4: Context of the Organisation
1. Objective
The objective of this document is to establish the foundational context of the Information Security Management System (ISMS) by:
- Identifying internal and external factors influencing security (Clause 4.1 - Understanding the organisation and its context)
- Defining the requirements of interested parties (Clause 4.2 - Understanding the needs and expectations of interested parties)
- Establishing the boundaries and applicability of the ISMS scope (Clause 4.3 - Scope of the Information Security Management System)
- Outlining the framework to establish, implement, maintain, and continually improve the ISMS (Clause 4.4 - Information security management system / N.1.02 - Information security policy and management approval)
2. Scope
The scope of this document aligns directly with the overall scope of the ISMS. For full details, see Clause 4.3 - Scope of the Information Security Management System.
3. Availability and Access
This document is:
- Required reading for all anDREa employees and contractors.
- Available to all authorized interested parties and platform users via our public ISMS repository.