Scope and context
Organization, interested parties, processes, assets and ISMS boundaries.
ISO consulting
ISMS implementation with risk management, controls, Statement of Applicability, evidence, internal audit and certification readiness.

Implementation scope
The work is adapted to the organization’s size, maturity, risks and certification objectives.
Organization, interested parties, processes, assets and ISMS boundaries.
Methodology, assessment, treatment, owners and acceptance.
Selection, justification, implementation and evidence of applicable controls.
Documents, records, incidents, third parties, access and continuity according to scope.
Independent verification of ISMS compliance and effectiveness.
Gap closure, management review and support before external audit.
Method
We define scope, responsibilities and evidence before execution.
Current state, scope, gaps, risks and priorities.
Processes, controls, responsibilities, documents and indicators.
Execution, training, evidence and controlled follow-up.
Testing, internal review, corrective action and next-step readiness.
We define the real need, scope, risks and next steps before proposing an implementation.