Management Systems Excellence
Supporting the implementation and optimization of management systems such as ISMS or a PIMS through process improvement, risk management and compliance in alignment with applicable requirements and frameworks — such as the NIS-2, the GDPR, the DORA, and relevant standards such as ISO/IEC 27001, ISO/IEC 27701, as well as ISO 22301, including:
- Conduct initial gap analysis, audits and maturity assessments of current security/privacy processes
- Integrate risk management frameworks (identification, assessment, treatment)
- Design, review, and update existing documentation and controls
- Advise on roles and responsibilities such as product owners, IT and management board
- Advise on integration of security and privacy into business processes
- Support supplier/vendor risk management and compliance verification
- Support regulatory alignment
- Provide continuous improvement plans for management systems
