Home Our Solutions ISO 27701 Implementation
ISO 27701 differs slightly from other ISO standards because ISO 27001 certification is required first. Additionally, organisations that take ISO 27701 will create evidence to demonstrate GDPR compliance.
For more information see our information portal www.27701.pt.
Conduct a GAP analysis of the existing ISMS to the requirements of ISO 27701 and produce an action plan on how to deal with the identified gaps.
Conduct a mapping of personal data collected by the organisation to understand their scope and how they are used and shared with Processors.
Determine the organisation's role as Controller and / or Processor based on internal or external factors relevant to its context, such as privacy legislation, regulations, court decisions or applicable contractual requirements (among others).
Review and update the privacy policies to ensure that they include the necessary information.
Develop policies and procedures applicable to the organisation's role.
Start the implementation of the plan and carry out the necessary activities in the revised ISMS, including, among other, risk assessment, measurement and monitoring, internal audit, management review. Start the operation of the new system and assess its compliance.
Edifício Atrium Saldanha
Praça Duque de Saldanha, nº 1, 2º andar
1050-094, Lisboa | Portugal
T: +351 21 33 03 740
E: info@integrity.pt
5th Floor, Cottons Centre
Hay's Lane
London, SE1 2QG | United Kingdom
T: +44 20 7288 2800
Calle Cronos 63, 4ª planta Oficina 2
28037, Madrid | España
T: +34 91 376 88 20
Devoteam Cyber Trust S.A. uses cookies for analytical and more personalized information presentation purposes, based on your browsing habits and profile. For more detailed information, see our Cookie Policy.