ISO 27001 Certification – get your FREE quotation today
ISO 27001 is a specification to help you manage the security of your information. It’s relevant for all businesses and isn’t confined to information held on computers. It addresses the security of your information in whatever form it’s held.
The information may be printed, stored electronically, transmitted by post or email, shown on films, or spoken in conversation. Whatever form the information takes, or means by which it’s shared or stored, ISO 27001 helps you ensure it’s always appropriately protected.
How do you start to implement ISO 27001? What’s involved?
Developing an Information Security Management System (ISMS) that satisfies the requirements of ISO 27001 involves three steps:
1. Creation of a management framework for information
2. Identification and assessment of security risks
3. Selection and implementation of controls
Being Audited to ISO 27001
Once all the requirements of ISO 27001 have been met, you can apply for an external audit. This should be carried out by a third party, certification body, such as Approachable Certification.
Approachable Certification will firstly review relevant documentation. This should include the declared policy, scope of the ISMS, documents covering the risk assessment, risk treatment plan, Statement of Applicability and documented security procedures. The auditor(s) will also be checking that you’ve identified and implemented the controls that are appropriate to your size and type of business. This process is normally carried out at your premises, being more beneficial to both parties.
This is followed at a later date by a full on-site audit to ensure that working practices observe these procedures and stated objectives, and that appropriate records are kept.
After a successful audit, a certificate of registration to ISO 27001 will be issued. There’ll then be surveillance visits (usually once or twice a year) to ensure that the system continues to work.
What’s the cost of ISO 27001 Certification?
Approachable Certification is committed to transparent pricing with fees based on a fixed daily rate. Criteria for the number of days required for a particular audit is specified by the accreditation body, UKAS, and depends on such factors as the size of your company and what it does.
Consequently, a few specific details are required to provide you with a competitive quotation. Please call us on 0161 667 6610, email us or tell us a bit more about what your organisation does on the form below.