27 July 2015 at 4:33pm
I've spent a few weeks investigating how we can use open source tools to provide basic vulnerability assessment functionality within a small ISO 27001 scope (less than thirty systems). The more sophisticated and expensive and commercial products are great, but before we investigated their use I wanted to see what we could get on a limited budget (mostly my time).
5 November 2014 at 4:17pm
A brief post this time on my thoughts as to how best integrate certification to the Government's Cyber Essentials scheme into an ISO 27001 ISMS. I'm going to intentionally stay away from how to achieve certification to Cyber Essentials, and just focus on how it might sit within your ISMS.
