KORRA.BUSINESS Getting Audit-Ready — ISO 27001, SOC 2, Cyber Essentials
A customer has told your company it needs ISO 27001, SOC 2 or Cyber Essentials, and given you a date. This segment takes you from that email to a scoped, honestly-documented, evidenced position — and a gap assessment of your own organisation you can hand to a finance director.
4 modules · 12 lessons · 7h 17m
Unlock with the membershiplock Course contents
1 Why Anyone Asks You For This 3 lessons · 1h 32m lock
- play_circle The Customer Made You Do It 22m
- play_circle What an ISMS Actually Is 20m
- play_circle Drawing a Boundary You Can Defend 50m
2 Knowing What You Have 3 lessons · 1h 41m lock
- play_circle Three Frameworks, One Overlap 24m
- play_circle The Asset Register Includes People 22m
- play_circle Sampling the Fleet 55m
3 Writing It Down Honestly 3 lessons · 1h 35m lock
- play_circle Write the Policy You Are Actually In 24m
- play_circle One Paragraph That Is True Today 45m
- play_circle Getting Documentation Out of Developers 26m
4 Evidence, Questionnaires and the Gap 3 lessons · 2h 29m lock
- play_circle What an Auditor Accepts as Evidence 24m
- play_circle Four Pieces of Evidence, and One Questionnaire Answer 50m
- play_circle The Gap Assessment 75m