New risk strategy with ISO 27001 - Peak Consulting Group A/S

DK

NO

Case

Government agency operational risk strategy with ISO 27001

Print Friendly, PDF & Email

Peak helped government agency implement a new security standard and develop an operational risk strategy after the GDPR-implementation.  

Print Friendly, PDF & Email

Problem

In the wake of their extensive GDPR implementation in 2018, a government agency was anticipating their obvious next step: increasing the information security and subsequently securing a more structured approach to risk assessment in their administrative applications portfolio. Among other things, this entailed a transition to the ISO 27001-standard, the aim of which was to visualize and systematize the organization’s work with information security. The task thus involved devising a risk strategy that included implementation and the appertaining anchoring of a new security standard, but also developing a concept and method for risk management. 

Solution

The project was divided into 3 separate delivery tracks, and Peak’s consultants functioned as direct support or executive responsible in many areas: 

  • Being a coach and continuous sparring partner for project managers and project participants 
  • Producing the documentation necessary for carrying out the implementation  
  • Developing a concrete operational risk strategy 

The consultants functioned as project managers themselves, but also as sparring partners for the organization’s general project manager. Furthermore, the consultants were responsible for risk assessment education, as well as facilitation of a workshop with top management. This ensured, that the whole organization was prepared to handle the work with information following the implementation.

Results

0
Stakeholders were involved
0
Months from project start to complete implementation
0
Project hours delivered

Let us prepare a strategy for your data security

We are deeply familiar with ISO 27001, and we know, how important security is to most organizations. We also know that an essential part of IT-security is the people working with it, and this is why, we always make sure to create thorough documentation and anchoring between the people working with security.  

 

Read our other cases

Bank improved cyber security with new IT-concept 
Agency saved 3 million through agile development project 
Transport company established best practice investment program 

Feel free to reach out:

[email protected] | Tlf: +45 3526 2880

Din tilmelding er registreret

Tak for din tilmelding, der nu er modtaget. Der er en bekræftelse på vej til din indbakke. 

Hvis du har problemer eller spørgsmål til tilmelding, så skriv til [email protected]

Tilmelding til: Morgenseminar om den agile stat

Udfyld formularen og tilmeld dig seminaret. Ved tilmelding accepterer du vores persondatapolitik og handelsbetingelser

Bemærk: Vi forbeholder os retten til at afvise din tilmelding, hvis vi vurderer, at din profil ikke matcher målgruppen for seminaret. 

Hvis du har problemer eller spørgsmål til tilmelding, så skriv til [email protected]

Tilmelding til SAFe Forum 16. marts 2022

Udfyld formularen og tilmeld dig SAFe forum 16. marts 2022

Ved tilmelding accepterer du vores persondatapolitik og handelsbetingelser

Tilmelding til Årets projektdag 19. maj 2022

Bemærk: Konferencen er udsolgt, men du kan skrive dig på venteliste og få besked, hvis der er afbud. 

Ved tilmelding accepterer du vores persondatapolitik og handelsbetingelser

Hvis du har problemer eller spørgsmål til tilmelding, så skriv til [email protected]