ISO 27001 Internal Audit

Part of running an effective ISO 27001 Information Security Management System (ISMS) is to run an effective internal audit programme. The purpose of the audit programme is make sure, that the ISMS conforms to your own requirements as well as the requirements of the...

ISO 27001 Implementation Checklist

So you have decided to implement ISO 27001 (perhaps you read this blog), but how do you do it? Well here is our simple 20-step ISO 27001 implementation checklist. Leadership commitment. Yes, information security and ISO 27001 starts at the top. No surprise there....

ISO 27001 on the Microsoft Partner Network

We have another guest blog on the Microsoft Partner Network. This one is about the cost of ISO 27001: https://blogs.technet.com/b/mpn_uk/archive/2014/06/19/guest-blog-what-does-iso-27001-certification-cost-and-what-does-it-cost-if-you-don-39-t.aspx

ISO 27001 vs ISAE 3402

How does ISO 27001 vs ISAE 3402 look and is your customer asking you to have an ISAE 3402 report in place and how does that relate to ISO 27001? We sometimes help clients designing and implementing an information security system to be audited for use in an ISAE 3402...

ISO 27001 and change management

ISO 27001 and change management. Whether you are considering implementing ISO 27001 or ISO 9001 in your organisation it is about implementing change and one extremely important aspect of any such project is to make sure you are managing that change.   Information...

What is ISO 27001 and why should a company adopt it?

What is ISO 27001 and why should a company adopt it? Do you have smiling employees (or are surrounded by) employees that smile? Perhaps not the first thing that you would think of as a benefit of ISO 27001. However if you design and implement a great information...