Should You Start Your ISO 27001 Programme with a Gap Analysis or a Risk Assessment?Nov 24, 2023·11 min read
5 Common Fallacies Associated with ISO 27001 CertificationImplementing an information security management system (ISMS) and obtaining ISO 27001 certification, the International Standard for Information Security Management, offers several compelling benefits. The primary reason is that customers, clients, an...Nov 29, 2023·6 min read
How Do You Implement a Successful ISMS?To ensure a successful ISO 27001 implementation, it is important to involve the key individuals and groups responsible for managing information security in your organization. This includes the ISO 27001 implementation team, which will oversee the ent...Nov 15, 2023·5 min read
ISO/IEC 27001:2022 Key ChangesAfter the release of ISO/IEC 27001:2022 on October 25, 2022, here is a high-level analysis of the significant changes introduced in the standard. In summary, the most notable change in the standard is the comprehensive adoption of controls from ISO 2...Nov 14, 2023·4 min read
What are the basics of internal auditingIn this blog, the focus shifts towards internal audit, specifically in the context of ISO 27001 certification, the International Standard for Information Security Management. We will take a step back and examine internal auditing from the perspective...Nov 13, 2023·4 min read
How do you Categorise Your Assets When Conducting an Information Security Risk Assessment?"What is our strategy for identifying assets in our information security risk assessment? This question encompasses two key elements: first, determining which assets to incorporate, and second, deciding the level of detail to include in the asset lis...Nov 10, 2023·4 min read
How Do You Meet the Asset Management Requirements of IS0 27001?To comply with 'Asset management' A.8 outlined in Annex A of ISO 27001 certification, it becomes imperative to identify organizational assets, assign suitable protection responsibilities, and ensure that information is adequately safeguarded based on...Nov 8, 2023·2 min read
What Are the Critical Steps When Implementing an Effective Information Security Management System?After supporting more than 350 organizations in attaining ISO 27001 certification, we frequently encounter inquiries about the essential stages or fundamental components when establishing a successful information security management system. When we p...Nov 8, 2023·3 min read