ISO, Cybersecurity and Information Systems Governance Expertise
CISOSTAR supports organizations in the design, implementation, auditing, certification, and continual improvement of ISO Management Systems while strengthening their cybersecurity posture. Our team of certified Lead Auditors, Lead Implementers, and cybersecurity experts applies internationally recognized best practices to help organizations manage risk, protect digital assets, and achieve compliance with regulatory and international standards.
We plan, conduct, and manage Management System audits in accordance with the ISO 19011 auditing guidelines and the ISO/IEC 17021-1 certification process. Our services include internal audits, supplier audits, pre-certification assessments, certification readiness reviews, and comprehensive support throughout certification audits performed by accredited certification bodies.
Our cybersecurity services cover Governance, Risk and Compliance (GRC), risk assessment based on ISO 31000, ISO/IEC 27005, and EBIOS Risk Manager (EBIOS RM), penetration testing (Pentesting), vulnerability assessments, network security audits, web and mobile application security testing, cloud security assessments, Identity and Access Management (IAM), digital forensics, Business Continuity Planning (BCP), Disaster Recovery Planning (DRP), as well as Virtual CISO (CISO as a Service) and Virtual DPO (DPO as a Service) solutions.
We also assist organizations in the design, implementation, maintenance, and certification of Management Systems based on the world’s leading international standards, including ISO 9001, ISO 13485, ISO 14001, ISO 14064, ISO 22000, ISO 22301, ISO 26000, ISO/IEC 27001, ISO/IEC 27701, ISO/IEC 27017, ISO/IEC 27018, ISO/IEC 20000-1, ISO/IEC 42001, ISO 37001, ISO 45001, and ISO 50001