HomeAboutClientsContact
     Aston Information Security logo
     information security
cyber insurance graphic
        your information and network security needs taken care of
TEL: +44 (0) 1273 25 2827     


ISO 27001

Why is this service required?

Can you demonstrate to your clients and customers that your information security is as secure and well managed as it should be?

ISO 27002 is the international code of practice for Information Security Management and provides a common and proven basis for developing high organisational security standards and effective security management practice.

The UK Government's "Data Handling Procedures" has resulted in a number of companies aligning themselves with ISO 27001.

ISO 27001 is the actual standard to which certification is measured. It sets out the requirements for an Information Security Management System (ISMS).

An ISMS is a systematic approach to managing the security of sensitive information - encompassing people, processes, IT systems and policy.

What is this service?

Aston Information Security's security cleared consultants deliver accreditation against the standard for many clients as well as assisting with compliance, implementation and training.

We support our clients by providing a strong set of security policies, which protects client data, managed by the ISO 27001 ISMS that complies to information security management".

Our services include:

    bullet   Conducting a Gap Analysis to assess the level of compliance of the information security management system (ISMS) against the requirements of ISO 27001, and provide a plan to achieve compliance/accreditation.

    bullet   Risk Management and Analysis to develop an asset registers and security risk assessments, including the production of Statement of Applicability (SoA) - a key requirement of ISO 27001.

    bullet   Review, advise and write Policies and Procedures and measure their effectivenss and maturity.

    bullet   Security Awareness, Education and Training. Providing security awareness materials and courses, as well as delivering tailored training for security roles.

    bullet   Conduct audits against ISO 27001.

Customer Benefits

    bullet   Independent assurance of your internal controls and meets corporate governance and business continuity requirements

    bullet   Provides a competitive edge by meeting contractual requirements and demonstrating to your customers that the security of their information is paramount

    bullet   Reduction in client security audits

    bullet   Provide assurances that your company risks are properly identified, assessed and managed

    bullet   Management can demonstrate its commitment to information security

    bullet   Proves your senior management's commitment to the security of its information

Contact us to find out how we can help you with your