These components can be delivered together or individually and may cover the following tasks:
Gap Analysis / Health Check
We are able to provide you with a service either in preparation for BS7799/ISO17799 certification or to objectively assess your current ISM status against internal objectives.
Project Implementation
In circumstances where you do not require external consultancy we are able to provide extensive strategic and tactical advice and guidance to act as a "sounding board", mentor or "guide" to senior management, and others, to help keep the Project focussed.
Workshops
Utilized throughout each Project to maximise the opportunity of group participation and involvement. Used for Project "Kick-Off" and "Close-Out", at the beginning and end of your Project Phases and throughout as the situation demands. Workshops encourage your employees' sense of ownership thereby underpinning responsibility and commitment and are a valuable training platform.
Documentation and Deliverables
The implications of shortcomings identified by a gap analysis give rise to the identification and development of the appropriate deliverables required to address them - using information risk analysis and risk management methodologies.
Cetis will help you to produce a portfolio of documents consistent with BS7799/ISO17799 including, but not restricted to, Policy Statements, Baseline Control Documentation, Procedure Manuals, Training Materials and Induction Programme Material. Our Consultants have developed documentation that has been used successfully by a number of organisations that have achieved BS7799 Certification.
Training
Provided for all levels of expertise, from introductions to Information Security and BS7799 to how to plan and implement an entire project, on a 'one-on-one' or group basis.
Compliance Monitoring
Ensures that you are conducting ongoing compliance against the level of controls that you require and ensures that your Information Security Management System remains cost effective and fit for purpose.
Tools
Software tools, templates and methodologies are available from Cetis in a variety of formats to help with several stages of your ISMS implementation:
Policy and Baseline Control templates
Documentation, available in several different formats that can be tailored by yourselves to suit your organisation, or by Cetis, if required.
Computer based awareness training
Delivers essential awareness training direct to all users of information assets via your corporate intranet. Include your own policies and assess the end user's understanding of all presented material. Extremely flexible, customisable and updateable. Please see 'Cetis KT' details for further information.
Project Plans
Cetis' fully customisable project plans convert shortcomings identified in the Gap Analysis into a comprehensive set of individual tasks required to address all relevant issues. Clear representation of tasks and resources required together with relevant timescales prove a powerful tool in managing any ISM project.
Future developments
Cetis continually creates and develops new and unique software tools for the IS professional. If you are looking for a tool to suit a particular task that you do not see listed please contact us directly to discuss your requirements.