ISO 27001:2022 – what has changed? The new guide
The new Annex A structure, 93 controls across 4 themes, and what the transition means for your ISMS.
Read practical articles on ISO 27001, information security, website development, WordPress security, applications, AI chatbots, private AI models and secure digital transformation.
The new Annex A structure, 93 controls across 4 themes, and what the transition means for your ISMS.
From context and risk analysis to the SoA, controls, internal audit and management review.
A clear explanation, a real-world example and how the PDCA cycle proves it genuinely works.
Discover the overlap, where they differ and how ISO 27701 makes privacy demonstrable on top of your ISMS.
From updates and MFA to backups, awareness and monitoring — the baseline set every organisation needs.
The key risks and measures: updates, plugins, hardening, backups and monitoring.
Consider speed, mobile-friendliness, SEO, security, conversion and maintenance when making your choice.
Security by design: secure architecture, access management, data minimisation and secure code.
Secure configuration, patch management, backups, monitoring, encryption and shared responsibility.
A step-by-step plan: scope, assets, threats, likelihood × impact and risk treatment — the foundation of ISO 27001.
Answer customer questions, support employees and unlock company knowledge — with proper training and security.
Run AI on your own server or private cloud, with more control over data and privacy.
Efficiently adapt existing AI models to your processes and terminology, without training from scratch.
Cloud is fast and scalable, offline/local offers more control and privacy. Compare the options.
Manage new risks such as data breaches, prompt injection and unreliable output with policy and controls.
When is maintenance enough and when is an upgrade or redesign the smarter choice? The signals at a glance.
What is the difference, and when do you choose which? A clear explanation with a practical decision aid.
From scope and risk analysis to internal audit and management review — become audit-ready step by step.
Cost, objectivity, time and chance of success side by side — plus what to look for when choosing an audit partner.
Context, leadership, planning, support, operation, evaluation and improvement — explained chapter by chapter.
With Secrotec's guidance, Certe Assuradeuren achieved ISO/IEC 27001 certification.
Named Best Service Provider 2025 by Bureau DFO — recognition of quality and service.
No articles found for your search.
Book a no-obligation audit scan and find out in a single conversation where you stand and what the next step is.
Trusted by organisations