ISO 27001:2005 standard is the natural evolution of the BS7799-2:2002 standard, a British standard that defines the requirements for an Information Security Management System. International Organization for Standardization published this standard in October 2005, and it is appropriate to all industries organizations that aim to implement an Information Security Management System (ISMS).
The great challenge of implementing an ISMS rises on comprehending and prioritizing actions to be compliant with all requirements established by the standard.
Modulo Risk Manager allows evaluating the organization’s compliance score by analyzing risks, identifying controls to be deployed and helping the decision-maker to prioritize actions and investments to meet the ISO 27001 compliance.
SERPRO
"Modulo Risk Manager fully meets the needs established previously and has been used in several projects. Its technical and managerial reports support us in the identification and minimization of risks involving processes".
Gilberto Netto
Security Coordinator