







Your Compliance Control Center
Specifically designed to manage the complexities of your ISO 27001:2013 ISMS and ISO 9001:2015, sections 4-10 auditable requirements and all applicable GRC compliance requirements. It also maps PCI-DSS and CPS234 requirements and can be extended to support state or territory-based compliance frameworks.
Simple, Easy to Establish & Maintain
Unlike other complex GRC toolsets, ISO Manager is designed to be simple to use and has industry-leading adoption rates. We feel that it's the simplest ISO Management solution to use - anywhere in the world. It's proven in large-scale deployments and ISO Manager Cloud SaaS can be used by businesses of all sizes from 2 to 20,000 users.
ISO 27001:2013 Framework
ISO Manager is based upon our proprietary ISO 27001 Framework, which is a simple step-by-step process of implementing & managing ISO 27001's sec. 4-10 generic requirements. The tool has been designed to help you wrestle your ISMS, risk registers, action lists and audit items under control. It helps you manage and inform your team and keep your Continuous Improvement Register running.
Main Features
- Assign information security classification levels to assets
- Risk assessment against the 114 controls of ISO 27001:2013
- Add custom control requirements
- Assign confidentiality, integrity and availability levels
- Generate information security risk assessment reports
- Business continuity (BCP) and Disaster Recovery (DR) module that covers the respective areas of ISO 27001/2
- Threat catalogue and ability for users to create new threats
- Tracking the implementation of the mandatory requirements (sections 4 to 10) of ISO / IEC 27001:2013 and other security standards
- Tracking the organization’s overall project implementation and status of the Information Security Management System (ISMS)
- Document register and management
- Information Security Incident Response Module
- Corrective Actions Register
- Log user access with an audit trail
- Access permissions and rights
-
Custom branding
A wide range of additional options can be customised to meet your specific enterprise requirements.