ISO/IEC 27001 as a Starting Point for GRC