CERT SOLEUS

ISO 27001

INFORMATION SECURITY MANAGEMENT

Overview

ISO/IEC 27001 addresses information security management systems. It centres on understanding information risks and organising appropriate controls, responsibilities and ongoing review.

Where to focus

  • Define the information and activities within scope.
  • Assess risks and document treatment decisions.
  • Review access, incidents and the effectiveness of controls.

Preparing your organisation

Start with a clear scope and an inventory of important information. Collect evidence of risk assessment, control decisions, internal review and corrective actions.

LET'S TALK

Clarity for your next step.

Share your requirements and the standard or service you would like to discuss.