I will create iso 27001 isms, do risk assessment and data privacy compliance
IRCA Certified Auditor and QHSE Consultant ISO 9001 45001 14001
Level 1
Has met certain performance criteria and shows strong potential in the marketplace.
About this Gig
Need an ISO 27001 risk assessment or GRC compliance audit for your business?
I will help you pass your ISO 27001, GDPR or risk compliance audit with a clear gap analysis, custom policies and audit-ready report.
Im Ismail, IRCA-certified Lead Auditor and Six Sigma Black Belt. For 5+ years Ive helped tech companies, SMBs and public orgs implement GRC frameworks and get certified fast.
WHAT YOU GET:
ISO 27001:2022 Risk Assessment & Gap Analysis vs current state
GRC Compliance Audit covering governance, risk, data privacy & ethics
Custom ISO 27001 policies, procedures and ISMS framework ready to use
GDPR & Law 09-08 Data Privacy review for VUCA business contexts
Executive-ready report with findings, scorecard and 90-day roadmap
1 strategy call to explain results and next steps for certification
WHY CHOOSE ME:
- IRCA Lead Auditor: ISO 9001, ISO 14001, ISO 45001, ISO 27001 trained
- Six Sigma Black Belt for process optimization
- 5+ years auditing management systems internationally
- Delivered 50+ GRC projects: Tech, Software, Public, Services
- Work in EN / FR / AR with strict NDA & full confidentiality
Not sure which package fits your needs? Contact me before ordering
Business type:
Corporates
•
SMBs
Industry:
Business services & consulting
•
Cyber security
•
Software
FAQ
Do you provide ISO 27001 risk assessment and gap analysis?
Yes. I deliver a complete ISO 27001 risk assessment and gap analysis vs ISO 27001:2022. You will receive a risk register, compliance scorecard, and a 90-day remediation roadmap. This is included in Standard and Premium packages.
Can you help me get ISO 27001 certification?
I prepare your full ISMS documentation, policies, controls, and Statement of Applicability for the ISO 27001 certification audit. I do not issue the certificate itself, as only accredited bodies can. My Premium package includes audit preparation and 30 days post-delivery support for your certificati
What is included in the GRC consulting report?
All packages include an executive report with: risk matrix, SWOT analysis, compliance gaps vs ISO 27001/31000, and prioritized action plan. Standard and Premium also include custom GRC policies and a consulting deck for management.
Do you work with small businesses or only enterprises?
I work with SMBs, startups, and enterprises. The Basic package is designed for small businesses that need a fast ISO 27001 risk assessment. Premium is for companies preparing for full ISMS implementation and certification.
How long does the ISO 27001 implementation take?
Basic risk assessment: 3 days delivery. Standard compliance audit + roadmap: 7 days delivery. Premium full ISMS setup: 14 days delivery. Timeline depends on your company size and responsiveness during data collection.
Do you provide custom GRC policies and templates?
Yes. Standard includes 1 custom GRC policy framework. Premium includes 40+ pages of custom policies, procedures, and controls templates aligned with ISO 27001, ISO 31000, and ISO 37301. All editable Word/Excel files.
What information do you need from me to start?
After order, I will send you a brief questionnaire to collect: company context, current IT systems, existing policies, and scope of certification. The sooner you reply, the faster I deliver. No technical knowledge required from your side.

