ISO 27001 and ISMS
Scope, risks, controls, SoA, evidence and audit preparation for a maintainable system.
We accompany companies that need to implement ISO 27001, adapt to the ENS, prepare NIS2 or validate their systems with a technical and business vision.
We prioritize requirements, risks, controls and evidence so that management, IT and audit understand what needs to be done and why.
Scope, risks, controls, SoA, evidence and audit preparation for a maintainable system.
Adaptation to the National Security Scheme for suppliers, public contracts and regulated systems.
Government, suppliers, incidents, continuity and priorities according to applicability.
Test web, APIs, network and application review to find and prioritize real risks.
A single roadmap to meet requirements, reduce exposure and generate useful evidence.
We start with objectives, users and processes. We design a delivered solution, develop in iterations and measure the result to improve after publishing.
Direct answers before starting.
We review it according to activity, size, contracts, clients and exposure. It is not based on a predetermined certification.
They share risks, controls, evidence, continuity and suppliers. A coordinated route avoids duplications.
Both. We can accompany the implementation and validate applications, APIs or infrastructure with tests and technical review.
We propose an initial scope, priorities and next steps without committing to a solution you don't need.