ISO 27001

Information Security

ISO 27001 ensures the data your company holds is confidential when necessary, accurate and secure yet remains accessible to those that need it

Keeping data safe is a hot news item these days. It has emerged as a significant business risk, and can be embarrassing, costly and even disastrous if things go wrong. That is why it is essential to have a robust management system in place to deal with the risk that data loss, corruption and theft can pose to your business.

We will put together a project to manage this risk and then we will work closely with you to implement the project to ensure you always properly manage the confidentiality of your data, preserve its integrity while making sure that it is accessible to those that need it.

Nicholas von Fircks and Steve Fudge, MD of Fudge’s Bakery. Robust management systems are in place to manage business continuity

Our simple and methodical approach will give you the confidence and peace of mind that all your assets and risks have been identified and are properly controlled. When the project is completed, your system will be assessed by an independent UKAS-accredited body who will issue an ISO 27001:2015 certificate.

The certificate will give confidence to your stakeholders and prospective customers that your information security is assured.

- Benefits of ISO 27001 Certification

  • Simple implementation
  • Jargon Free
  • Bespoke and relevant
  • Not just I.T. based
  • Low Cost
  • High Risk Protection
  • Increase Contract Wins
  • Motivate your workforce
  • Fit around existing processes

Don't just take our word for it!

Have a look at some of our past work

 

- ISO 27001 Frequently Asked Questions (FAQs)

Certainly. In fact all the ISO risk management systems are designed to work as a single integrated entity. Many of the functions can be combined (such as auditing and management review). This saves you time and money and gains you efficiency and continuity.

Peace of mind, better business resilience through business continuity and disaster recovery and finally you will be at an advantage if you need to tender for public sector contracts.

Usually not. It is not all about electronic data in any case. We will also be address the physical security and access of records for example. According to your business and the types of transactions that occur we will make recommendations for improvements in technology where necessary. You will always have options and will make any investment on the open market – we are not I.T. suppliers but if you wish we can involve a partner organisation.

Definitely not. It is a methodical and structured approach which we co-ordinate for you. You will see benefits straight away and gain peace of mind knowing that your organisation is becoming better organised and resilient.

As with all management systems, we start by looking at your organisation’s strategic risks and opportunities and the actions to address them. Then we list all the categories of information your company processes and identify suitable control measures to guarantee the confidentiality, integrity and accessibility of the information.

- Our Strategy