GRC / ISO 27001Fintech — Digital Payments01
ISO 27001 Certified in Under 4 Months
- Challenge
- A growth-stage fintech needed ISO 27001 certification as a prerequisite for a banking partnership, under a tight commercial deadline and with an internal team that had never been through a certification audit.
- Approach
- We started with a comprehensive gap analysis, built the ISMS with all policies and procedures, guided implementation of the relevant Annex A controls, trained the internal team, then steered the internal audit through to stage 1 and stage 2 certification audits.
- Results
- ISO 27001 certificate issued in time for the partnership deadline
- Passed the certification audit on the first attempt
- Internal team able to run the ISMS cycle independently
<4 mo
Gap analysis → certificate
1st try
Certification audit passed
93
Annex A controls assessed