I will write iso 27001 documentation and security policies


About this gig
e before ordering if you would like to discuss scope first.I help organizations prepare clear, well structured ISO 27001 documentation and information security policies.
With an ISO/IEC 27001:2022 Lead Auditor certification, an MSc in Cyber Security, and a background in technical pre sales and cybersecurity, I write documentation that reflects real understanding of the standard, not just templated language.
What I can help with:
Information security policy and supporting policy documents
ISMS documentation such as scope statements, risk registers, and statements of applicability
Security procedures and control documentation aligned to Annex A
Gap analysis summaries against ISO 27001 requirements
General compliance documentation support
Please note, I am not a certification body and cannot issue or guarantee ISO 27001 certification. Certification is granted only by an accredited certification body after their own audit. This service is documentation and policy writing support only, and does not include penetration testing or technical security testing.
All documentation is built from the information you provide about your organization. I do not fabricate
Get to know Raffay R
Technical Pre Sales, Solution Architecture, RFP Writing
- FromUnited Kingdom
- Member sinceJan 2016
- Avg. response time1 hour
Languages
English
FAQ
Can you certify my business against ISO 27001?
No. I am not a certification body, so I cannot issue or guarantee certification. I prepare the documentation and policies your chosen certification body will assess. Actual certification is granted only by an accredited certification body after their own audit.
Do you perform penetration testing or technical security testing?
No, this gig covers documentation and policy writing only. It does not include penetration testing, vulnerability scanning, or any other technical security testing.
What information do you need from me to get started?
Details about your organization, current security practices, the systems and processes in scope, and any existing policies or documentation you already have. The more you can share, the more accurate the documentation will be.
Can you help with a gap analysis before certification?
Yes. I can review your current setup against ISO 27001 requirements and provide a written summary of gaps as part of the Premium package.
What file formats will I receive?
Documents are delivered as editable Word or Google Docs files. Let me know if you need a different format.
