Volg ICTI

Blog

GDPR and ISO27001 training at ICT Institute

Training agenda

ICT Institute provides trainings and workshops on many modern and innovative aspects of IT, both from a business, technical and legal perspective. We have a team of teachers for this purpose, which can illuminate a subject from multiple perspectives. To register, send an email to sieuwert AT ictinstitute.nl with course, date and attending preference (in…

Pavlo Burda
Photo by Buddy AN on Unsplash

Access Management: an introduction

You can have the best firewalls and the tightest encryption, but if your data bucket is openly reachable online or a former contractor’s account is still active after years, these technological controls are not really protecting you. Indeed, broken access control and security misconfiguration stay the two top risks for web apps. This is where…

Pavlo Burda

A basic risk management method for information security

One of the requirements for good information security is to have a method for risk identification and assessment. This article describes one simple and practical method that can be used by any organisation. This page is part of a series on ISO 27001 controls and our free ISO27001 and GDPR templates.

Sieuwert van Otterloo

ICT Institute is now a Vanta partner: what users told us

ICT Institute has joined the Vanta partner programme. For our clients – companies working towards ISO 27001 – this means we can now combine our hands-on ISMS work (scoping, risk workshops, internal audits) with a compliance platform that takes a lot of the grind out of collecting evidence and keeping controls alive throughout the year.

Pavlo Burda

Implementing ISO 42001: example audit report

In our previous article on the AI Risk Management System, we explained how an AIMS can help organizations structure AI governance and support compliance efforts with the AI Act. Here we introduce our new template for auditing and structuring your AIMS and prepare for ISO 42001 certification. What is the AIMS? ISO 42001 requires organizations…

Pavlo Burda

The AI Act Risk Management System

  In this article we explain what an AI Risk Management System (RMS) is, and why it is required by the AI Act for high-risk AI systems. We outline the components of the AI RMS and how you can potentially leverage, for example, your existing ISO 27001 work for ISO 42001 compliance. The AI Act:…

Pieter t Hoen