An ISMS secures a company's information assets and creates sustainable structures for greater resilience through processes, measures and continuous improvement. We support you as a partner in the systematic development and successful implementation of an ISMS in accordance with ISO/IEC 27001. One key to success: internal communication. As the entire company must be involved here, the involvement and buy-in of all employees is absolutely crucial for the development of a holistic security organisation.
Information Security Officer | Governance, Risk & Compliance Consultant
An ISMS (Information Security Management System) is the foundation for managing information security in your company in a sustainable and traceable manner. Alignment with recognised standards such as ISO/IEC 27001 creates transparency, risk minimisation and legal certainty in management as well as in operational business.
With a structured ISMS in accordance with ISO/IEC 27001, you get robust processes, clear responsibilities and centralised documentation for all security-related topics.
The result: greater transparency, minimised risks and a demonstrably enhanced security culture, now and in the future.
1
Project preparation
2
Document review
3
Structure of document master
4
Gap analysis
5
Action management
6
Quality assurance & finalisation
We discussed the entire path of an ISMS project in the episode ISMS and NIS2 on the home straight: Endurance sport of information security times discussed. Michael talks to Erik Krüger, Information Security Officer and Consultant at suresecure, about why security is not a sprint, but a long-term training process. Instead of quick wins, it takes strategy, discipline and the right rhythm. Erik explains how companies with a functioning ISMS already fulfil most of the NIS 2 requirements, what really matters during implementation and why motivation and communication are crucial for success.