If you are an SME looking to quickly accomplish (or maintain) ISO 27001:2022 or NIST or SOC-2, or a larger corporation looking to get help on ongoing paperwork, we can be your virtual team. Services include:
- Strategy and implementation of PII control in workspace
- Consolidation and maintenance of SOA and evidence
- Timely in-house training content, training administration and logging
- Leading the evidence presentation for audits
- Maintenance of all corporate artifacts - from org charts to department metrics
- Design and change management of org processes, procedures
- Design and maintenance of risk registers
- Access control compliance, including SSO
- Specific IT implementations - end point security, encryptions, role-based access, incidence response procedures
- Sourcing, administration and closure of vulnerability assessment penetration testing (VAPT)
- Operational oversight of all the above
- Active audit representation and NC remediation
- Active management of responses to security questionnaires
We bring direct practical knowledge of helping end to end establishment of SOA and Controls and evidence.
Cost can be as low as a part-time consultant with weekly logs. Potential savings are at least 50%
Questions? Please reach us!!! - mano@govansys.com/6088867682
Tags: ISO 27001:2022 NIST SOC compliance consulting