I will review and improve your information security policies
Cybersecurity Specialist, Digital Forensics, SOC and XDR Expert
About this Gig
Security policies should explain what to do, who owns each decision and what evidence to keep.
I review existing information security policies for clarity, ownership, consistency and practical use. My experience includes SecOps, GRC and serving as a Data Protection Officer.
BASIC: a focused 1-hour review of one policy, up to 5 pages, with comments and priority actions.
STANDARD: up to 3 policies / 25 pages, with revisions and consistency checks within 7 hours.
PREMIUM: up to 6 policies / 50 pages, with revisions, proposed owners and a review schedule within 12 hours.
Standard and Premium include marked-up and clean revised copies. I flag claims that need confirmation against actual practices. All packages cover one organization and the stated time and page limits.
Send a document inventory and your objectives before ordering. New policy drafting, certification audits, legal opinions, implementation and guaranteed ISO or SOC 2 compliance are outside scope. English or Norwegian delivery is available.
Expertise:
Compliance
•
Documentation
Project focus:
Other
FAQ
Do you do the compliance audit or certification itself?
A document review cannot establish compliance or certification. I improve supplied policies and identify decisions or implementation work that remains. Formal audits, certification and legal opinions are outside scope.
What information do you need from me to get started?
Provide editable policies, page counts, your objectives, current owners and a short description of actual working practices. One organization per order. Contact me first if you need formal framework mapping or a larger scope.
Can you customize policies to match our existing style guide or template?
Yes. Send over your branding or an existing document and I'll match the format, tone, and structure.
