ISO 27001:2022 Implementation Consultant Needed for Small SaaS

Remote Full-time
We are Fentrica (www.fentrica.com), a Tallinn-based SaaS company offering building connected management software and energy management platforms. We are a lean team of ~10 employees looking for an experienced Information Security Consultant to guide us through ISO 27001:2022 implementation and certification. We have already selected our external auditor (Metrosert) and defined our scope. Our audit will be done remotely. Now, we need a hands-on consultant to prepare the ISMS, write the necessary policies, and get us ready for the Stage 1 audit. The Goal: We need you to "hold the pen." We are looking for someone to draft the required policies and procedures tailored to our size and tech stack. We want a lean, practical ISMS that satisfies the auditor without creating unnecessary bureaucracy for a 10-person startup. Our Tech Stack & Environment: Cloud Infrastructure: Azure (primary), AWS (Cognito only). Identity & Access: bolthires Workspace, 1Password. Observability: New Relic / Azure. Responsibilities: Gap Analysis: Review our current setup against ISO 27001:2022 controls. Documentation Writing: Draft the Statement of Applicability (SoA), Information Security Policy, and all mandatory procedures (Access Control, Risk Management, Incident Response, etc.). Risk Assessment: Facilitate the risk assessment process and help us define the Risk Treatment Plan. Audit Prep: Prepare us for the Stage 1 and Stage 2 audits. Scope: The scope is defined as "Information security management in Fentrica cloud platform development, operation and support processes". Requirements: Proven experience implementing ISO 27001:2022 for small SaaS companies (Startups). Technical understanding of cloud environments (Azure/AWS). Ability to write clear, concise documentation in English. To Apply: Please briefly describe your experience with: ISO 27001 implementations for companies with up to 20 employees. Apply tot his job Apply tot his job
Apply Now

Similar Opportunities

Senior IT Auditor - "life-science industry"-REMOTE

Remote

Freelance IT Support Consultant

Remote

Infor M3 Technical Consultant

Remote

Sr IT Technical Consultant, Workday

Remote

Senior Oracle Fusion SCM Consultant

Remote

HCM Implementation – Support Consultant

Remote

Jury Consultant / Courtroom Technology and Persuasion Specialist

Remote

Technical Support Specialist – Remote

Remote

Remote Japanese/English Interpreter and Translator for Global Automotive Company in Raymond, OH (Morning Shift)

Remote

Korean, Japanese, Mandarin Chinese, & English linguistic projects (Remote)

Remote

[Remote] Cybersecurity & Compliance Analyst

Remote

Sr. Medical Writer (U.S. Remote & Temp to Hire)

Remote

Product Management Consultant US Remote

Remote

Part time, Remote Data Entry Clerk - Work From Home at Yexgo Denver, CO

Remote

Part Time Remote Administrative Assistant - Data Entry Specialist - Entry Level Opportunity with Flexible Scheduling - Work from Home and Earn Up to $158 Per Day - No Experience Required - Open to Ages 16+

Remote

**Experienced Remote Live Chat Specialist – Customer Service Representative for arenaflex**

Remote

Lead Game Designer

Remote

Senior IT-Security Engineer - Endpoint Protection; m​/w​/d Cologne Posted

Remote

Entry Level Data Entry Specialist – Launch Your Career with arenaflex, No Prior Experience Required, and Unlock Endless Opportunities in the Thriving World of Data Management

Remote

Sales Associate - Retail Operations in Atlanta, GA - Join Our Team and Make a Difference in Serving Others

Remote
← Back to Home