Compliance with standards and HMG policy including ISO27001 and NCSC guidance
We are skilled in assisting organisations achieve and maintain compliance with ISO27001 and help clients assess the implications of cloud computing for their Information Security Management System (ISMS). We also have experience in making assessments against the NCSC Cloud Security Principles and other NCSC Cloud guidance/best practice.
Features
- Help to develop your Information Security Management System
- Risk-based approach focussing on critical areas in your cloud environment
- Gap analysis audit on ISO27001 controls providing targeted remediation
- Our staff are qualified as ISO27001 auditors and implementers
- Review of the 14 Cloud Security Principles within the business
- Enable proportionate management of risks
- Ensure compliance with organisational policies
- Ensure compliance with HMG policy
- Review against NCSC Secure Development Principles
- Review against NCSC Bulk Personal Data Principles
Benefits
- Reduces business risk
- Ensures that security is proportionately managed throughout a project
- Effectively provides an on-site Security Assurance Coordinator (SAC)
- Provides full evidence to underpin security decision making
- ISO27001 shows your customers that you take information security seriously
- You meet an internationally recognised best practice standard
- Supports compliance with other standards
- Understand how cloud computing affects your security
Pricing
£600 to £1,000 a unit a day
Service documents
Request an accessible format
Framework
G-Cloud 14
Service ID
4 3 5 0 0 8 4 3 7 7 2 5 2 4 5
Contact
Giltar Information Security
Dudley Joseph
Telephone: +447786527631
Email: dudley.joseph@giltar-infosec.co.uk
Planning
- Planning service
- Yes
- How the planning service works
- The service can provide security planning so that services can be appropriately assured/accredited before implementation.
- Planning service works with specific services
- No
Training
- Training service provided
- No
Setup and migration
- Setup or migration service available
- No
Quality assurance and performance testing
- Quality assurance and performance testing service
- No
Security testing
- Security services
- Yes
- Security services type
-
- Security strategy
- Security risk management
- Security design
- Cyber security consultancy
- Security audit services
Ongoing support
- Ongoing support service
- No
Service scope
- Service constraints
- No
User support
- Email or online ticketing support
- No
- Phone support
- No
- Web chat support
- No
- Support levels
- No support services offered
Resellers
- Supplier type
- Not a reseller
Staff security
- Staff security clearance
- Other security clearance
- Government security clearance
- Up to Security Clearance (SC)
Standards and certifications
- ISO/IEC 27001 certification
- No
- ISO 28000:2007 certification
- No
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- Yes
- Cyber essentials plus
- No
- Other security certifications
- No
Social Value
- Social Value
-
Social Value
Fighting climate changeFighting climate change
We can provide services both on site or remotely depending on the client's preference. Most contracts are expected to be delivered in a hybrid fashion (i.e mix of on site and remote). Our consultants won't undertake unnecessary travel. We use public transport as our first choice of travel method and make use of innovative forms of sustainable transport in urban areas where at all possible (use of publicly available e-scooters/e-bikes for instance).
Pricing
- Price
- £600 to £1,000 a unit a day
- Discount for educational organisations
- No