<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Colin Brown | UK ISO Consultants</title>
	<atom:link href="https://isoconsultants.co.uk/author/colin-brown/feed/" rel="self" type="application/rss+xml" />
	<link>https://isoconsultants.co.uk</link>
	<description>Leadership and guidance preparing you for ISO auditing</description>
	<lastBuildDate>Tue, 30 Jan 2024 16:13:23 +0000</lastBuildDate>
	<language>en-GB</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	

<image>
	<url>https://isoconsultants.co.uk/iso2023wp/wp-content/uploads/2023/09/cropped-iso-fab-icon-32x32.png</url>
	<title>Colin Brown | UK ISO Consultants</title>
	<link>https://isoconsultants.co.uk</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>Data Security and the role of ISO 27001 certification</title>
		<link>https://isoconsultants.co.uk/data-security-and-the-role-of-iso-27001-certification/</link>
					<comments>https://isoconsultants.co.uk/data-security-and-the-role-of-iso-27001-certification/#respond</comments>
		
		<dc:creator><![CDATA[Colin Brown]]></dc:creator>
		<pubDate>Fri, 05 Feb 2021 12:00:43 +0000</pubDate>
				<category><![CDATA[ISO 27001 Audit]]></category>
		<category><![CDATA[Certification]]></category>
		<category><![CDATA[data security]]></category>
		<category><![CDATA[What is ISO27001]]></category>
		<guid isPermaLink="false">https://www.independentqualityservice.com/?p=15503</guid>

					<description><![CDATA[]]></description>
										<content:encoded><![CDATA[<div class="et_pb_section et_pb_section_0 et_pb_with_background et_section_regular" >
				
				
				
				
				
				
				<div class="et_pb_row et_pb_row_0">
				<div class="et_pb_column et_pb_column_4_4 et_pb_column_0  et_pb_css_mix_blend_mode_passthrough et-last-child">
				
				
				
				
				<div class="et_pb_module et_pb_text et_pb_text_0  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				
			</div>
			</div>
				
				
				
				
			</div><div class="et_pb_row et_pb_row_1">
				<div class="et_pb_column et_pb_column_4_4 et_pb_column_1  et_pb_css_mix_blend_mode_passthrough et-last-child">
				
				
				
				
				<div class="et_pb_module et_pb_text et_pb_text_1  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><h3></h3>
<p><strong>Data Security? But we’ve got passwords and virus checking????</strong> </div>
			</div><div class="et_pb_module et_pb_text et_pb_text_2  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner">2020 has been a difficult year in many ways, but some businesses seem to take a longer time to learn lessons than others. OK so we’re a bit geeky, had a PC in the very early nineties, remember when software came on disks, like playing with gadgets and stuff. But you’d think that being careful with your data was pretty common knowledge by now surely? Nobody really sends their bank details to Nigerian Princes believing they will receive millions in cash because he has nobody else to give it to, do they? And yet, the last few months shows people still haven’t learned:</p>
<p>14 Sep 2020 18,000 Covid-19 test results put online by mistake</p>
<p>16 Oct 2020 British Airways fined £20m over data breach</p>
<p>30 Oct 2020 Marriott fined £18.4m for hotel guests data breach</p>
<p>13 Nov 2020 Ticketmaster fined £1.25m over payment data breach</p>
<p>23 Nov 2020 Children’s names published in email</p>
<p>26 Nov 2020 NHS data breach involving 284 patients uncovered</p>
<p>Source: https://www.bbc.co.uk/news/topics/c0ele42740rt/data-breaches</p>
<p>And those are just a few of the issues which hit the headlines, like many, many phenomena this is just the tip of a huge iceberg, the big names which make big headlines, beneath these monoliths are smaller companies losing millions, and rarely spoken about. ISO 27001 describes a routine system for assessing the risks to your business information and data, the controls to put in place to address those risks, and the periodic checks you need to complete to ensure those risks, and the new ones which will develop tomorrow, are identified, actioned and closed down.</p>
<p>Getting a UK government backed certificate to say that your system addresses ISO 27001 gives you, and all those affected by your operations, additional confidence. If you are sharing data with customers, suppliers or even colleagues they will all have more confidence in you if they know you have invested the time to make sure that such information is safe and secure.</div>
			</div>
			</div>
				
				
				
				
			</div><div class="et_pb_row et_pb_row_2">
				<div class="et_pb_column et_pb_column_4_4 et_pb_column_2  et_pb_css_mix_blend_mode_passthrough et-last-child">
				
				
				
				
				<div class="et_pb_module et_pb_cta_0 et_pb_promo  et_pb_text_align_center et_pb_bg_layout_dark">
				
				
				
				
				<div class="et_pb_promo_description"><h2 class="et_pb_module_header">Questions? We have answers!</h2><div>If you would like a cost-effective solution to gaining ISO 27001 certification from a government recognised body contact us now. </div></div>
				<div class="et_pb_button_wrapper"><a class="et_pb_button et_pb_promo_button" href="https://isoconsultants.co.uk/contact/">Get in touch</a></div>
			</div>
			</div>
				
				
				
				
			</div>
				
				
			</div>
]]></content:encoded>
					
					<wfw:commentRss>https://isoconsultants.co.uk/data-security-and-the-role-of-iso-27001-certification/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>Cost Effective ISO 27001 Certification and Why Most Companies Pay Too Much&#8230;</title>
		<link>https://isoconsultants.co.uk/cost-effective-iso-27001-certification-and-why-most-companies-pay-too-much-2/</link>
					<comments>https://isoconsultants.co.uk/cost-effective-iso-27001-certification-and-why-most-companies-pay-too-much-2/#comments</comments>
		
		<dc:creator><![CDATA[Colin Brown]]></dc:creator>
		<pubDate>Tue, 11 Sep 2012 10:53:01 +0000</pubDate>
				<category><![CDATA[General]]></category>
		<category><![CDATA[ISO 27001]]></category>
		<category><![CDATA[Archived]]></category>
		<category><![CDATA[Birmingham]]></category>
		<category><![CDATA[BYOD Dangers]]></category>
		<category><![CDATA[BYOD Threats]]></category>
		<category><![CDATA[Certification]]></category>
		<category><![CDATA[Derby]]></category>
		<category><![CDATA[East Midlands]]></category>
		<category><![CDATA[ISO Certification]]></category>
		<category><![CDATA[ISO Consultant]]></category>
		<category><![CDATA[IT outsourcing problems]]></category>
		<category><![CDATA[Leicester]]></category>
		<category><![CDATA[Nottingham]]></category>
		<category><![CDATA[Quality Management System]]></category>
		<category><![CDATA[Requirements]]></category>
		<category><![CDATA[security audit]]></category>
		<category><![CDATA[West Midlands]]></category>
		<category><![CDATA[What is ISO2700]]></category>
		<guid isPermaLink="false">http://iais.wpengine.com/?p=1770</guid>

					<description><![CDATA[]]></description>
										<content:encoded><![CDATA[<div class="et_pb_section et_pb_section_1 et_pb_with_background et_section_specialty" >
				
				
				
				
				
				<div class="et_pb_row">
				<div class="et_pb_column et_pb_column_3_4 et_pb_column_3   et_pb_specialty_column  et_pb_css_mix_blend_mode_passthrough">
				
				
				
				
				<div class="et_pb_row_inner et_pb_row_inner_0">
				<div class="et_pb_column et_pb_column_4_4 et_pb_column_inner et_pb_column_inner_0 et-last-child">
				
				
				
				
				<div class="et_pb_module et_pb_text et_pb_text_3  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><p style="text-align: left;">Occasionally, I&#8217;m shocked at what companies spend on ISO 27001 certification.. An MD recently told me he had been quoted £1500 a day for implementing <a href="https://isoconsultants.co.uk/standards/iso-27001/">an ISO 27001 Information Security System</a>, with a minimum of 14 days consultancy required, a total cost of £21000. Nice work if you can get it.</p>
<p>In contrast, I recently implemented such a system for a local business for less than £6000, including certification by one of the World’s leading independent bodies. Was it the same? Yes. Did I leave anything out? No. So why the difference ?</p>
<p>And, just one more time, <a href="http://en.wikipedia.org/wiki/ISO/IEC_27001:2013">what is ISO 27001?</a>  It&#8217;s an International Standard intended to establish an IT and Information Security System in a business.<span id="more-1770"></span></p>
<p>And <a href="http://www.bsigroup.co.uk/en-GB/iso-27001-information-security/">&#8220;Why ISO 27001?&#8221;</a> Hacking, spoofing, virus attacks, and all kinds of cybercrime are a hot topic. Threats to your business are no longer from local criminals, but may come from another continent, and a burglar alarm won&#8217;t keep them out. Certain organisations will insist on it as a minimum requirement before even contemplating doing business with your company.</p>
<p>So, why such a difference in cost for an identical ISO 27001 certification service?</p>
<p>First I deliver the system myself, so nobody is taking large commissions for passing it onto people with the right skills. No brokers, middle-men, agencies. I am the actual person with the skills and experience, a strong background in telecommunications and IT, and promise to deliver a fully compliant system first time. Full stop. I’ll even offer you a guarantee that if you don’t pass first time I’ll work for you for free until you do. I don’t have a large expensive office or employ an army of expensive sales and marketing staff.</p>
<p>I&#8217;m based in The East Midlands, close to Derby, Nottingham, and Leicester, rather than Central London, so I&#8217;m not paying big city overheads, yet can reach all the major business centres of the UK within a few hours. All this means I can bring you an excellent service with the minimum of overheads, the essence of effective consulting but without the superfluous corporate trappings.</p>
<p>But is this “low cost ISO certifcation”, that is, “approval-lite”? Not at all. I used to be an auditor with a world leading certification body, which gives both you and me some significant advantages – I understand ISO systems and certification requirements intimately, sometimes better than those who audit them. I&#8217;ve worked for a number of major corporate bodies as head of quality, which involved high levels of security clearance, so I bring <a href="https://isoconsultants.co.uk/about/">experience gained in some of the UK&#8217;s most prestigious corporates</a>, but without those associated costs. It also means I have read systems by many world leading companies including those which feature heavily documented procedures and systems which appear to be generated by consultants paid per word.</p>
<p>I&#8217;ve had to endure them, and I don&#8217;t want my customers to do so. They waste time, and hence money. I write concise, easy to understand ISO 27001 Certification documents where they are truly necessary, and educate and train your staff where the requirement is simply one of competence.</p>
<p>This means I can be quicker and more relevant than many, with simpler systems and hence with fewer areas of potential failure. Now, if you are a World Leading Bank or Insurance Company and have lots of other people’s money to spend, you are welcome to engage someone in from a world famous consultancy with a double-barrelled name and pay them £1500 a day.</p>
<p>On the other hand, if you need <a href="http://www.iso.org/iso/catalogue_detail?csnumber=54534a/">a working ISO 27001 Information Security System</a> your staff can easily use, certified to the same standard by the same independent certifiers but for a fraction of the cost, <a href="https://isoconsultants.co.uk/contact">I&#8217;d love to hear from you</a>.</p>
<p>Colin Brown</p>
<p>IAIS Ltd</p>
<p><a title="Contact" href="/contact/">Contact me now</a></p>
<p>&nbsp;</p>
<p style="text-align: center;">Written by <a title="Colin Brown" href="https://plus.google.com/u/1/109135308302240162318?rel=author" target="_blank" rel="noopener noreferrer">Colin Brown</a> of ISO Consultants</p></div>
			</div><div class="et_pb_module et_pb_divider et_pb_divider_0 et_pb_divider_position_ et_pb_space"><div class="et_pb_divider_internal"></div></div>
			</div>
				
				
				
				
			</div>
			</div><div class="et_pb_column et_pb_column_1_4 et_pb_column_4    et_pb_css_mix_blend_mode_passthrough">
				
				
				
				
				<div class="et_pb_module et_pb_sidebar_0 et_pb_widget_area clearfix et_pb_widget_area_left et_pb_bg_layout_light">
				
				
				
				
				<div id="block-2" class="et_pb_widget widget_block widget_search"><form role="search" method="get" action="https://isoconsultants.co.uk/" class="wp-block-search__button-outside wp-block-search__text-button wp-block-search"    ><label class="wp-block-search__label" for="wp-block-search__input-1" >Search</label><div class="wp-block-search__inside-wrapper" ><input class="wp-block-search__input" id="wp-block-search__input-1" placeholder="" value="" type="search" name="s" required /><button aria-label="Search" class="wp-block-search__button wp-element-button" type="submit" >Search</button></div></form></div><div id="block-3" class="et_pb_widget widget_block"><div class="wp-block-group is-layout-flow wp-block-group-is-layout-flow"><h2 class="wp-block-heading">Recent Posts</h2><ul class="wp-block-latest-posts__list wp-block-latest-posts"><li><a class="wp-block-latest-posts__post-title" href="https://isoconsultants.co.uk/common-pitfalls-in-iso-27001-implementation/">Common Pitfalls in ISO 27001 Implementation</a></li>
<li><a class="wp-block-latest-posts__post-title" href="https://isoconsultants.co.uk/iso14001-in-construction-and-architecture-industries/">ISO14001 in Construction and Architecture Industries</a></li>
<li><a class="wp-block-latest-posts__post-title" href="https://isoconsultants.co.uk/what-is-iso-17020-and-does-it-apply-to-your-sme/">What is ISO 17020 and does it apply to your SME?</a></li>
<li><a class="wp-block-latest-posts__post-title" href="https://isoconsultants.co.uk/point-of-keeping-iso-certificate/">What&#8217;s the point of keeping an ISO Certificate?</a></li>
<li><a class="wp-block-latest-posts__post-title" href="https://isoconsultants.co.uk/risk-management-across-different-iso-standards/">Risk Management Across Different ISO Standards</a></li>
</ul></div></div><div id="block-4" class="et_pb_widget widget_block"><div class="wp-block-group is-layout-flow wp-block-group-is-layout-flow"><h2 class="wp-block-heading">Recent Comments</h2><ol class="wp-block-latest-comments"><li class="wp-block-latest-comments__comment"><article><footer class="wp-block-latest-comments__comment-meta"><a class="wp-block-latest-comments__comment-author" href="http://eccinternational.com/consulting/standards-and-compliance/">Raviarjun</a> on <a class="wp-block-latest-comments__comment-link" href="https://isoconsultants.co.uk/insiders-view-iso-27001-certification/#comment-4">An Insider&#8217;s View of ISO 27001 Certification</a></footer></article></li><li class="wp-block-latest-comments__comment"><article><footer class="wp-block-latest-comments__comment-meta"><a class="wp-block-latest-comments__comment-author" href="http://www.lmsassessments.com/">Ankita</a> on <a class="wp-block-latest-comments__comment-link" href="https://isoconsultants.co.uk/iso-27001-audit-checklist-basics/#comment-3">The ISO 27001 Audit Checklist – Some Basics</a></footer></article></li><li class="wp-block-latest-comments__comment"><article><footer class="wp-block-latest-comments__comment-meta"><a class="wp-block-latest-comments__comment-author" href="http://www.iascertification.com/iso-27001-certification.html">Iso 27001 Certification</a> on <a class="wp-block-latest-comments__comment-link" href="https://isoconsultants.co.uk/cost-effective-iso-27001-certification-and-why-most-companies-pay-too-much-2/#comment-2">Cost Effective ISO 27001 Certification and Why Most Companies Pay Too Much&#8230;</a></footer></article></li></ol></div></div>
			</div>
			</div>
				</div>
				
			</div>
]]></content:encoded>
					
					<wfw:commentRss>https://isoconsultants.co.uk/cost-effective-iso-27001-certification-and-why-most-companies-pay-too-much-2/feed/</wfw:commentRss>
			<slash:comments>1</slash:comments>
		
		
			</item>
	</channel>
</rss>
