The ISO 27001 standard sets the guidelines for implementing an Information Security Management System (ISMS). Through this framework, you guarantee the security, integrity and confidentiality of your data, mitigating risks and meeting your regulatory obligations.
Choose a cybersecurity-expert company to implement the ISO 27001 and 27701 standards and guarantee comprehensive protection of your data. With our experience we transform your security practices, improving your organization’s resilience against threats and ensuring regulatory compliance.
ISO 27701 is an extension of ISO 27001: one protects information, the other privacy. To implement 27701, your organization first needs an ISMS compliant with 27001. We support you with both.
Information Security Management System: the international standard for protecting your data.
A privacy extension that adds personal-data management requirements and supports GDPR.
Identification and treatment of information risks, the foundation of the whole ISMS.
We define and justify the Annex A controls applicable to your organization.
We verify the system’s effectiveness and prepare your team for certification.
We guide you throughout the certification body’s audit until you earn the seal.
We take you through a clear certification funnel: we start from a GAP diagnosis and advance, phase by phase, to the ISO 27001 and ISO 27701 seal. At each stage you reduce risks and gain maturity and confidence.
The seal that opens doors: increasingly common as a requirement in tenders and with large clients.
We measure the gap between your current situation and the standard’s requirements.
We define the scope, policies, risk analysis and controls.
We check that the system works and correct any nonconformities.
We support you in the external audit and the maintenance cycles.
ISO 27001 is based on the PDCA cycle: plan, implement, check and improve, continuously. Certifying once is not enough; we keep your ISMS alive so it evolves with threats and with your business.
Yes. 27701 is a privacy extension that relies on an ISMS compliant with 27001. We implement both in a coordinated way.
Yes, throughout the certification body’s audit and in the subsequent maintenance cycles.
We can keep your ISMS alive with support, internal audits and continuous improvement.
It depends on the size and maturity of your organization, usually between 4 and 9 months from the diagnosis to the certification audit.
ISO 27001 certifies your information security management system; ISO 27701 extends it to privacy management and reinforces your compliance with RGPD.
GRUPO LINKA supports ISO 27001 (information security) and ISO 27701 (privacy) certification: consulting, implementation and audit. We are a Fortinet Expert Partner with our own 24/7 SOC (Spartan SOC), certified in ISO 27001 and with ENS High Level accreditation, and we provide service across Spain. It is part of our Cyber Consulting.