You can create a single, comprehensive issp document covering all information security issues.

An overview of the corporate philosophy on security

Information on the structure of the information security organization and people who

fulfill the information security role
Fully articulated responsibilities for security that are shared by all members of the

organization (employees, contractors, consultants, partners, and visitors)
Fully articulated responsibilities for security that are unique to each role within the

organization

What three purposes does the ISSP serve?

What three purposes does the ISSP serve? Addresses specific areas of technology, such as authorized and prohibited usage of equipment, policies, liability, and systems management.

Are the complete details of ISO IEC 27002 are widely available to everyone?

The ISSP is a plan which sets out the requirements that must be met by the information security blueprint or framework. The complete details of ISO/IEC 27002 are widely available to everyone.

Which type of planning ensures that critical business functions continue if a catastrophic incident or disaster occurs?

Business continuity planning (BCP) is the process involved in creating a system of prevention and recovery from potential threats to a company. The plan ensures that personnel and assets are protected and are able to function quickly in the event of a disaster.

What should an effective ISSP accomplish?

What should an effective ISSP accomplish? - It articulates the organization's expectations about how its technology-based system should be used. - It documents how the technology-based system is controlled and identifies the processes and authorities that provide this control.