"easy2comply’s ability to aggregate the underlying data into multiple report formats automatically saves us time compared to reproducing this manually for each process."

Mitsui Sumitomo Insurance Group

ISO 27001 Software

easy2comply ISO 27001 compliance software provide simple and effective framework for implementation and management of Information Security risk in compliance with the ISO 27001 standard.


easy2comply ISO 27001 software includes best practice recommendations on IT security management systems (ISMS) and it enables a simple and fast implementation of the ISO 27001 standard. The solution can be implemented as a standalone application or as part of a larger suit of additional IT GRC applications and can be deployed either on demand or on site.


With easy2comply ISO 27001 software you can do:


Project Scoping


  • Mapping of assets
  • Business evaluation of assets

Threat Evaluation


  • Define and evaluate the threats
  • Map vulnerabilities to those threats

Risk Assessment


  • Defining the existing controls
  • Defining the recommended controls
  • Determining the time-frames to implement the recommended controls

Auditing


  • Planning audits based on existing controls
  • Executing audits, collecting evidences and determine the treatment plan

Reporting


  • Statement Of Applicability (SOA)
  • Treatment Plan
  • Any other generated report or graph


Who is this product intended for?

  • IT Auditors

  • CISO

  • CIO

  • Compliance Officers

Relevant regulations:

IT Governance
Business Continuity Management
PCI DSS compliance


BenefitsProduct Benefits


  • Save auditing costs by easily running and tracking most information security audits internally
  • Adopt advanced risk based methodologies for IT and Security Assessment
  • Implement a methodology for standardizing audit practices and responses

featuresProduct Features


  • Personalized questionnaires for asset valuations
  • Link threats and vulnerabilities
  • Automated periodic risk assessments
  • Link ISO 27001 and ISO 27002 controls to risks
  • Automated InfoSecurity remediation tracking