Question
What does the Kertos external CISO actually do?
Answer
They steer the information security process: reviewing scope and requirements, assessing the risk assessment, preparing and facilitating the management review, reviewing ISMS documentation, evaluating measure and training status, preparing and following up audits, assessing security incidents, and reporting to management. We define the exact scope together with you.