See all roles

ISO 27001:2022 Implementation Consultant Needed...

Work from home Full-time role Hiring

We are Fentrica (www.fentrica.com), a Tallinn-based SaaS company offering building connected management software and energy management platforms. We are a lean team of ~10 employees looking for an experienced Information Security Consultant to guide us through ISO 27001:2022 implementation and certification. We have already selected our external auditor (Metrosert) and defined our scope. Our audit will be done remotely. Now, we need a hands-on consultant to prepare the ISMS, write the necessary policies, and get us ready for the Stage 1 audit. The Goal: We need you to "hold the pen." We are looking for someone to draft the required policies and procedures tailored to our size and tech stack. We want a lean, practical ISMS that satisfies the auditor without creating unnecessary bureaucracy for a 10-person startup. Our Tech Stack & Environment: Cloud Infrastructure: Azure (primary), AWS (Cognito only). Identity & Access: arenaflex Workspace, 1Password. Observability: New Relic / Azure. Responsibilities: Gap Analysis: Review our current setup against ISO 27001:2022 controls. Documentation Writing: Draft the Statement of Applicability (SoA), Information Security Policy, and all mandatory procedures (Access Control, Risk Management, Incident Response, etc.). Risk Assessment: Facilitate the risk assessment process and help us define the Risk Treatment Plan. Audit Prep: Prepare us for the Stage 1 and Stage 2 audits. Scope: The scope is defined as "Information security management in Fentrica cloud platform development, operation and support processes". Requirements: Proven experience implementing ISO 27001:2022 for small SaaS companies (Startups). Technical understanding of cloud environments (Azure/AWS). Ability to write clear, concise documentation in English. To Apply: Please briefly describe your experience with: ISO 27001 implementations for companies with up to 20 employees. Apply tot his job

apply to this job

You might like

[Remote] ISO 27001 and TISAX Consultant

Work from home Full-time role

Single IRB Specialist

Work from home Full-time role

[Remote] IRB Administrator / TSRI – Human Resea...

Work from home Full-time role

IRB Compliance Monitoring Specialist (Office of...

Work from home Full-time role

Sr. Field Marketing Specialist in Intellectual ...

Work from home Full-time role

IRB Analyst

Work from home Full-time role

IRB Analyst

Work from home Full-time role

Cybersecurity Consultant (ISO 27001 / NIST / NIS2)

Work from home Full-time role

Research Compliance Analyst, Pathology & Labora...

Work from home Full-time role

Patent Prosecution Partner (Life Sciences)

Work from home Full-time role

Principal Software Engineer, Machine Learning Platform

Work from home Full-time role

Peer Warmline Specialist - CPRC or CPSS

Work from home Full-time role

JD Edwards Business Analyst Payroll-Financials

Work from home Full-time role

Experienced Virtual Chat Support Agent – Delivering Exceptional Customer Experience in a Dynamic Environment

Work from home Full-time role

Experienced Full Stack Data Entry Specialist – Amazon Marketplace Management

Work from home Full-time role

Patient Accounting Coordinator 2

Work from home Full-time role

Experienced Customer Service Representative – Delivering Exceptional Experiences at arenaflex

Work from home Full-time role

Part-Time Scheduling Coordinator - Hybrid Remote Applied Behavior Analysis

Work from home Full-time role

Regional Field Service Manager

Work from home Full-time role

Technical Implementation Specailist

Work from home Full-time role