top of page
Server Installation_edited_edited.jpg

​​Cyber crime has increased dramatically year on year so businesses that have safe and secure systems are ensuring that their product and service is more attractive to customers whose data they hold.

​

By obtaining ISO 27001, your business is ensuring that their systems are robust and secure. The management system will ensure that the confidentiality, integrity and availability of information is preserved by applying a risk management process.

 

Customers or prospects will buy more from an organisation that is not going to put their information at risk.

​

Our process for getting you ready to comply is detailed here​.

 

To begin the journey towards certification, and win more business, please click the button                                       or email us at assurance@anacruses.co.uk.

​

FAQs

Can I implement this standard on its own?

It is possible to implement this standard on its own, although it usually ties in with the Quality (9001) standard. With the advert of artificial intelligence, this standard neatly mirrors and complements the ISO 42001 AI standard. There are several clauses that match the other main ISO standards so integration also works.

The Information Security standard was recently updated. What changed?

As part of the natural cycle, the standard was updated to the 2022 version from 2013. The standard clauses (4 to 10) only changed slightly. However, the main changes were within the annex. The previous standard had 114 controls, which has now dropped to 93. This was a mixture of merges, amendments and new controls. However, within annex A, these controls have been grouped into 4 groups (organisational, people, physical and technological) which is down from 14 previously.

Our business has plenty of security measures. Why should we comply to this standard?

The standard provides a central framework for you so that you can monitor evolving risks and evaluate cyber risks. Additionally, the standard also looks at more than just electronic threats, as it focuses on paper based data and information. The standard promotes a proactive look at securing your data and information which leads to efficiencies and cost saving.

bottom of page