Clause 4 to 10 and Annex A controls reviewed against your current policies, procedures and evidence.
Vulnerability management, access control, cryptography, logging and secure development controls tested in practice.
Methodology, asset and risk register review, and treatment plan alignment.
Statement of Applicability review and preparation for stage 1 and stage 2 audits.
Document review and interviews with control owners across the organisation.
Technical controls validated by penetration testing and configuration review.
Prioritised remediation roadmap with owners and effort estimates.
Evidence pack and mock audit ahead of your certification body's visit.
No. Certification is issued by an accredited certification body. We prepare you for that audit and provide the technical testing evidence it requires.
A 30-minute call with a SecureBlock lead to align on objectives, assets and timeline. We follow up with a written scope and fixed-fee proposal within two business days.
Prefer email? sales@secureblock.io