ISO 27001 initial checklist
Scope, risks, SoA, evidence, audit and common errors before certifying.
See guide →A practical library to understand ISO 27001, ENS, NIS2, real incidents, BOE, EUR-Lex and cybersecurity reports without getting lost in technicalities.
Blue Moon's own content: each news is supported by a verifiable source and each guide ends in concrete actions.
Scope, risks, SoA, evidence, audit and common errors before certifying.
See guide →INCIBE, BOE, EUR-Lex, real attacks and practical lessons for companies.
See blog →If you don't know what applies to you, start with a scope and gap diagnosis.
Request diagnosis →Instead of mixing everything together, separate regulations, actual incidents, and business readiness.
For news, the standard is to link to the actual source and explain business impact without scaremongering.
Alerts, vulnerabilities and security notices.
See INCIBE →Applicable Spanish regulations: ENS, data protection and network security.
See BOE →European directives and regulations: NIS2, DORA, CRA and associated developments.
See EUR-Lex →Reports, guides and European context of threats and good practices.
See ENISA →We choose which rule, news or control really affects your company and we lower it into an executable plan.