My expertise cover the following areas: - GRC, ISMS and Security Polices.
Malware Analysis ( Static and Dynamic) Different tools will be used for the examination process. - Security operation center (SOC) Monitoring and analysis of different events and incidents.
I can Provide complete policies and procedure for ISO 27001, 20000.
- Information Security Policy
- Data Protection Policy
- Access Control Policy
- Data Retention Policy
- Asset Management Policy
- Risk Management Policy
- Information Classification and Handling Policy
- Information Security Awareness and Training Policy
- Acceptable Use Policy
- Clear Screen and Clear Desk Policies
- Remote Working Policy
- Business Continuity Policy
- Backup Policy
- Malware and Antivirus Policy
- Change Management Policy
- Third-Party Supplier Security Policy
- Continual Improvement Policy
- Logging and Monitoring Policy
- Network Security Management Policy
- Information Transfer Policy
- Secure Development Policy
- Physical and Environmental Security Policy
- Cryptographic Key Management Policy
- Cryptographic Control and Encryption Policy
- Document and Record Policy
And other all as per requirements and framework