05 Feb ISO 27001 Certification | Category - Pivot Point Security Why OFIs in Your Internal ISO 27001 Audit Report are a “Good Thing” July 11, 2024 By Richard Barrus I regularly perform internal Information Security Management System (ISMS) ISO 27001 audits for our clients. These internal audits prov... Continue reading
21 Jan Third Party Risk Management Using the Shared Assessments SCA for Added Benefits—Even If You’re Already ISO 27001 Certified January 15, 2024 By Richard Barrus The Standardized Control Assessment (SCA) tool is provided by the Shared Assessments program. It’s part of their “Trust but Verify” mod... Continue reading
18 Dec ISMS Consulting ISO 27701 and ISO 27001—Better Together January 13, 2024 By Richard Barrus We’re seeing a big uptick in interest in the newly published ISO 27701 data privacy extension to ISO 27001—especially among organizatio... Continue reading
07 Nov InfoSec Strategies | Category - Pivot Point Security Certified or Not—If You Got Breached, You Didn’t Do Enough January 12, 2024 By Richard Barrus Recently I had a hypothetical conversation with our marketing director about “what if” a spokesperson or responsible party for a govern... Continue reading
05 Nov ISO 27001 Certification | Category - Pivot Point Security Information Security Policy Documentation: Simple is Better January 15, 2024 By Richard Barrus Organizations seeking ISO 27001 certification sometimes choose to “err on the side of caution” and document “everything.” Usually this ... Continue reading