Who This Is For
SMBs proving security to customers or partners
SaaS and product teams
Security and IT providers
What You Get When We Work Together
- ISMS scope, context, and governance tailored to your organization.
- Risk assessment and risk treatment plan aligned with ISO 27001:2022.
- Statement of Applicability (SoA) covering Annex A controls.
- ISO 27001 policies and procedures customized to your team and stack.
- Guidance on technical controls: MFA, logging, backups, cloud, and SDLC.
- Internal audit, management review, and evidence prep.
- Certification readiness support for Stage 1 and Stage 2 audits.
How I Work
Discovery & scoping call
Risk assessment & SoA
Documentation & controls
Internal audit & management review
Certification prep
Why Work With Me
Common hurdles solved
Asset inventory & scope clarity
Logging & monitoring gaps
Supplier due diligence
SoA rationale & evidence mapping
Backup & DR practice
FAQ
How long does implementation take?
How much effort from our team?
Do you include the auditor?
Engagement options
Gap assessment
Most popular