Global

ISO 27001 certification with ISMS evidence generated automatically

ISO 27001:2022 — Information Security Management Systems

Risk treatment records, control effectiveness evidence, security incident management, and audit documentation — built into security operations so certification audits find everything ready.

ISO certification bodiesGlobal

30-day free trial · Private deployment included · Cancel anytime

About ISO 27001

ISO 27001 is the international standard for information security management systems. It provides a framework for establishing, implementing, maintaining, and improving an ISMS.

Top audit finding

"Control effectiveness evidence absent — controls documented as implemented but with no evidence they operate effectively"

Most common ISO 27001 non-conformance finding

Requirement mapping

ISO 27001 requirements — and how Certexi addresses them

Framework requirements

  • 1Information security risk assessment with documented methodology
  • 2Risk treatment plan with control selection and implementation evidence
  • 3Statement of Applicability with justification for included/excluded controls
  • 4Security incident management with investigation and improvement records
  • 5Internal audit program with documented non-conformances and CAPA
  • 6Management review with evidence of ISMS performance

Certexi approach

  • Risk register with treatment records and control effectiveness evidence linked
  • Security incident workflow: detect → classify → investigate → contain → recover → document
  • Access control records: provisioning, review, modification, and deprovisioning with evidence
  • Internal audit workflow with finding records and CAPA tracking
  • ISO 27001 audit bundle: Annex A control organized evidence for any audit period

Industry relevance

Sectors where ISO 27001 compliance applies

PRECIOS

Alineado al Valor Operativo, No al Número de Usuarios

El precio depende del alcance del despliegue, no del número de usuarios. Tus datos. Tu infraestructura. Tus reglas.

Todos los planes incluyen despliegue privado. Tu información permanece en tu infraestructura.

ISO 27001 Aligned
Private Deployment
Unlimited Users

Piloto

Valida antes de comprometerte

Personalizado

5 lugares por trimestre

  • Despliegue completo de plataforma
  • Soporte de configuración
  • Capacitación e incorporación
  • Acceso directo al equipo de producto
  • Iteración basada en retroalimentación
  • Período de evaluación de 8 semanas

Estándar

Operaciones de una ubicación

Desde $2,500

por mes, facturado anualmente

  • Todas las capacidades centrales
  • Biblioteca de plantillas estándar
  • Despliegue privado incluido
  • Soporte por email (respuesta 24h)
  • Actualizaciones trimestrales
  • Usuarios ilimitados

Enterprise

Multi-ubicación, alto cumplimiento

Personalizado

Basado en alcance del despliegue

  • Todo lo de Estándar
  • Desarrollo de plantillas personalizadas
  • Ingeniero de soporte dedicado
  • Garantías SLA
  • Integraciones avanzadas
  • Opción de despliegue air-gapped

Despliegue Privado Incluido en Todos los Planes

Cada plan incluye despliegue completo en tu infraestructura — Nextcloud, servidores Linux, Docker, Kubernetes o entornos air-gapped. Tu información nunca sale de tu control.

ISO 27001 evidence generated by security operations, not assembled for auditors.

30-day free trial. Private deployment on your infrastructure.

Start Free Trial