Annex A as a register
Manage every Annex A control in its own register, with status, owner and links to risks and evidence.
All Annex A controls, risks, policies, audits and evidence in one place, from scoping through certification and beyond.
From scoping to certification: all Annex A controls, risks and evidence in one environment.
Manage every Annex A control in its own register, with status, owner and links to risks and evidence.
Add risks with your own scoring method, link controls and track treatment through to acceptance.
Record per control whether it applies and why, and use that overview as your Statement of Applicability (SoA).
Every change is logged automatically with who, what and when, so your audit evidence stays current and traceable.
Software that supports your information security management system (ISMS): risks, Annex A controls, policies and evidence in one place. ManagementSysteem.nl is a flexible Dutch ISMS where you set up those registers yourself.
Yes. You make risk management, policy and the operation of controls demonstrable with a risk register, document management with version history and an automatic audit trail you use as evidence for your auditor.
No. You can import a proven ISMS structure as a template, or have an environment set up from an existing one, and then fully tailor it to your organisation.
Yes. You record the applicability and justification per Annex A control and keep that overview current as your Statement of Applicability.
Yes. ISO 27002 describes the controls behind ISO 27001; you manage both in one control register and link controls to risks and evidence.
Book a demo or start your free trial today.