Skip to content
Computertastatur mit Schlosssymbol

A milestone for our information security: successful recertification in accordance with ISO/IEC 27001:2022

A comprehensive information security management system protects a company's most important assets. ISO/IEC 27001:2022 certification attests that a company implements measures to the highest standards to achieve this. Holisticon has now received this certification once again.

Knowledge
Security, Informationssicherheit, ISMS, ISO27001

ISO/IEC 27001 is the internationally recognised standard for information security management systems. The certification confirms that companies effectively implement measures to secure confidential information, data integrity and the availability of IT systems. We are proud to announce that Holisticon has successfully passed the recertification according to ISO/IEC 27001:2022.

The audit was carried out by TÜV Rheinland and included not only the audit of our existing information security management system (ISMS), but also the conversion to the updated ISO/IEC 27001:2022 standard. This once again confirms our high standard in the management of information security and data protection.

High requirements for information security

Holisticon began developing an ISMS on its own initiative in 2018 and successfully completed its first ISO/IEC 27001 certification in 2019. Since then, we have continued to refine our processes to meet the increasing requirements for information security. Today, many of our customers and business partners expect certification as a prerequisite for cooperation – clear proof that tested and standardised security processes are an important sign of trust.

In addition, a well-established ISMS not only brings benefits in terms of external impact, but also internally: security risks are recognised at an early stage and dealt with in a structured manner, processes are designed more efficiently and responsibilities are clearly defined. This not only strengthens our IT security, but also our overall risk management.

Why is ISO/IEC 27001 certification important?

The certification shows that the company systematically analyses risks, implements suitable measures to protect information and works continuously to improve its security processes. In doing so, they not only protect their own data, but also that of their customers and partners – a decisive factor in today's increasingly digitalised business world.

Successful audit for recertification and standardisation changeover

The most recent recertification by TÜV Rheinland posed a particular challenge: in addition to the renewed audit of our ISMS, the focus was on the transition to the updated ISO/IEC 27001:2022 standard. This new version entails a number of changes, particularly in the Annex A controls, which have been adapted to modern threats and technologies. We have used the transition phase intensively to further optimise our security measures and meet the new requirements.

For example, the new control

  • 5.23 on the secure use of cloud services,
  • 7.4 on the monitoring of buildings and rooms or
  • 8.28 on the principles of secure software development.

We have used the transition phase intensively to further optimise our security measures and meet the new requirements.

A strong ISMS for the future

The successful recertification confirms our ongoing commitment to information security and data protection. Not only do we remain compliant with international standards, but we are also constantly developing our ISMS to meet future challenges. Security is an ongoing process - and our commitment to it remains unwavering.

Author

Lars Jacke

Information security guru, sailing enthusiast and gaming pro, with a boat as his second home. An expert who cracks complex problems with creative solutions!

About us

Holisticon in 80 Words

Holisticon is a tech consultancy that operates holistically, - by managing strategy, organization and technology right from the beginning to empower and future-proof the digitalization of innovative business models.

Holisticon was founded in 2007 by Oliver Ihns and Dierk Harbeck. Today, more than 80 employees from Hamburg, Hannover and Munich successfully guide numerous companies from a variety of industries through the transformation process. Holisticon has also partnered with leading tech brands and is a member of the international Nexer Group.