Stay Ahead in Compliance
Sharp insights on ISO audits, risk management, and quality systems.

Accepting, mitigating, or avoiding risks: how do you choose?
Coming Soon
No scheduled articles at the moment.
More articles

ISO 27001 beleid: verplicht document of strategisch instrument?
Hoe je van je beveiligingsbeleid meer maakt dan een document dat in de la verdwijnt.

Planning of changes: why change management is often underestimated
The role of changemanagement in ISO 27001 and why it is so crucial for your organization.

Determine scope for ISO certification without audit issues.
How to define a realistic and defensible scope that holds up during audits.

NIS2 implementation: what internal auditors need to check now
The NIS2 directive requires organizations to adhere to increasingly stringent cybersecurity requirements. Internal auditors need to know which control measures are now under scrutiny and how to approach an audit for NIS2 compliance.
Read more
An information security policy that is actually read
Tips for writing an accessible and effective information security policy.

How do you demonstrate management involvement without putting on a show?
Authentic ways in which management can demonstrate its commitment to information security.

How does ISO 42001 work?
Think about certification for ISO 42001? Then read this article.
Read more
OWASP vs ISO 27001
Read more
Fase 2 audit ISO 27001: this is what the auditor expects in practice
Practical insights into what auditors check during the phase 2 audit and how you can prepare for it.

Fase 1 audit ISO 27001: how to avoid a false start
Common pitfalls during the phase 1 audit and how to avoid them for a smooth certification.

What does an ISO 27001 auditor check in a phase 1 audit?
Discover what auditors specifically examine during the phase 1 audit and how to optimally prepare yourself.

What is ISO 27001?
The core concepts of ISO 27001 and the benefits for organizations
Read more
Vulnerability management in ISO27001
Vulnerability management in depth helps prevent incidents.
Read more
Nonconformities, what now?
It is not a problem if an auditor identifies shortcomings. Consider it a learning moment. This is how you write a good action plan.

How to conduct a good internal audit?
Internal audits are part of the ISMS evaluation phase and play a crucial role in controlling quality and ensuring compliance with standards within organizations.
Read more




