fosstodon.org is one of the many independent Mastodon servers you can use to participate in the fediverse.
Fosstodon is an invite only Mastodon instance that is open to those who are interested in technology; particularly free & open source software. If you wish to join, contact us for an invite.

Administered by:

Server stats:

8.8K
active users

#iso27001

0 posts0 participants0 posts today

Today’s risks don’t sit in silos - so why is your risk management strategy still acting like they do?

From AI and cyber threats to third-party dependencies and cloud misconfigurations, risks in 2025 are interconnected, fast-moving, and deeply complex.

Yet too many organisations still treat them like isolated events. That’s not just outdated - it’s dangerous.

In our latest post, we explore:

👽 Why modelling risk relationships matters more than ever
👽 How scenario planning is evolving with AI and quantum-powered analytics
👽 The shift from compliance to strategic risk management
👽 And how advanced GRC platforms and third-party risk tools are transforming ERM into a true business enabler

Whether you're building resilience or unlocking opportunity, risk strategy in 2025 must be integrated, contextual, and forward-looking.

Ready to upgrade your enterprise risk posture?

Read the full post here: paulreynolds.uk/top-enterprise or get in touch for support on ISO 27001, cyber assessments, and GRC frameworks that actually work.

🔍 𝐈𝐒𝐎 𝟐𝟕𝟎𝟎𝟏 𝐯𝐬. 𝐆𝐃𝐏𝐑 𝐯𝐬. 𝐒𝐎𝐂 𝟐 – 𝐂𝐨𝐧𝐟𝐮𝐬𝐞𝐝 𝐚𝐛𝐨𝐮𝐭 𝐭𝐡𝐞𝐬𝐞 𝐟𝐫𝐚𝐦𝐞𝐰𝐨𝐫𝐤𝐬? 🌐 Discover how each one protects data differently, from information security management to privacy regulations and service controls. Know the difference, stay compliant! ✅

Join ISO 27001 Course - infosectrain.com/courses/iso27

#iso27001#GDPR#SOC2

NIS2: It’s not just an EU thing.

A quiet shift in cybersecurity regulation is about to make noise – and UK businesses need to pay attention.

NIS2 massively expands the original NIS Directive. More sectors. More requirements. More pressure on leadership to actually care about cyber risk.

If your business touches the EU (or works with suppliers who do), it could be in scope – even if you’re based in the UK. And even if it’s not mandatory, aligning with NIS2 is quickly becoming a mark of credibility.

🔒 Risk-based security
⏱ Rapid incident reporting
🔗 Supply chain accountability
📈 Leadership-level responsibility

Not sure if you’re affected? Want to get ahead of the game? Let’s talk.

Compliance is moving fast. I’ll help you keep up 👽

paulreynolds.uk/nis2-complianc

Security, privacy, and sustainability — not just words, but actions. At Soverin, we believe that doing the right thing means building it into the way we work. That’s why we got certified.

The Road to Quality, Security, and Sustainability: Soverin’s Journey to ISO Certification and NIS2 Compliance: soverin.com/resources/media/so #DigitalSovereignty #ISO #NIS2 #ISO27001 #ISO14001 #ISO9001

soverin.comSoverin: Soverin’s Journey to ISO Certification and NIS2 Compliance

🚀 𝗘𝗿𝗳𝗼𝗹𝗴𝗿𝗲𝗶𝗰𝗵𝗲 𝗔𝘂𝗱𝗶𝘁𝗶𝗲𝗿𝘂𝗻𝗴 𝗯𝗲𝗶 𝗗𝗘𝗪𝟮𝟭 🚀

Die Dortmunder Energie- und Wasserversorgung GmbH (DEW21) wurde im Rahmen eines internen Multi-Standard-Audits hinsichtlich der Umsetzung und Berücksichtigung von Anforderungen nach ISO 27001, 27019, KRITIS-DachG sowie NIS2UmsuCG erfolgreich geprüft.

Mithilfe unseres Auditteams konnten Überschneidungen der Prüfstandards im Vorfeld identifiziert und konzentrierte Audittermine durchgeführt werden. Ausgesprochene Befunde und Verbesserungen werden nun von DEW21 genutzt, um das #ISMS kontinuierlich zu verbessern.

🔒 𝗪𝗮𝗿𝘂𝗺 𝗱𝗮𝘀 𝘄𝗶𝗰𝗵𝘁𝗶𝗴 𝗶𝘀𝘁?
👉 Nachweis der Umsetzung gesetzlicher Anforderungen nach #ISO27001
👉 kontinuierliche Verbesserung des ISMS sicherstellen und belegen
👉 Gewährleistung der Funktionsfähigkeit der betriebenen Kritischen Infrastruktur

🧐 Zur gesamten Erfolgsgeschichte: hisolutions.com/detail/audit-d

Pour bien commencer l'année 2025, nous avons une nouvelle à partager avec vous : Probesys est désormais certifié ISO 27001 🎉🔒.

Cette certification n'est pas seulement une étape importante pour notre coopérative, elle reflète notre engagement constant sur la qualité, la sécurité et la fiabilité de nos solutions ✅⚙️.

La certification ISO 27001 était l’étape principale vers notre objectif : la certification HDS 🎯📜.

We are once again – or, to be more precise, remain – ISO 27001 certified! 🥳💯 What does that mean? 🤔 It means that the certification body of Swiss Safety Center AG certifies that we successfully apply an information security management system (ISMS) for the scope «development and operation of public and private cloud-based PaaS and SaaS solutions and associated consulting services» – in accordance with ISO/IEC 27001:2022. ✅ #iso27001 #certified #data #secure #nine

Replied to Pyrzout :vm:

@jos1264 Well... Icm more "classic", authenticity is a subset of integrity in my eyes. And non-repudiation is a thing following directly out of confidentiality (of the password) and integrity (of the systems)... ok, and to be fair: out of logging things, so...

yeah. This article might have shaken the foundation of my arguments while writing this toot. Thanks.