Services / ISO & management systems
ISO/IEC 27001.
ISO/IEC 27001 provides the foundation for a structured information security management system.
What matters now.
An ISMS helps organisations systematically identify, assess and treat risks to information, systems, processes and confidential data.
SITsolutions supports ISMS development, improvement and audit preparation with a practical focus on actual risks.
Need a clearer picture? We consider your current position and the requirements that actually apply.
How we help
Support that moves you forward.
The scope depends on your objectives, organisation and existing arrangements.
Baseline review and gap analysis
Developing an ISMS structure
Defining roles, responsibilities and processes
Supporting asset and risk management
Drafting and revising policies and work instructions
Developing a Statement of Applicability
Supporting action planning and tracking
Your outcomes
Results you can put to work.
We focus on records and decisions that are useful internally and clear to external reviewers.
- ISMS review and gap analysis
- Scope and ISMS structure
- Roles and responsibilities
- Asset and risk assessment
- Statement of Applicability
- Policies and work instructions
Our approach
A clear path, step by step.
- 01
Establish the baseline
Assess existing processes, documents, risks, evidence and responsibilities.
- 02
Structure the ISMS
Develop scope, roles, risk management, documentation, actions and evidence.
- 03
Support implementation
Create and maintain policies, assessments, measures and supporting software structures.
- 04
Prepare for audit
Review readiness, open points, evidence and management review.
Next step
What does your situation look like?
Together, we clarify your needs, priorities and a realistic next step.
Arrange a conversation