Information security and ISO 27001 advisory
Risk assessments, readiness, implementation, and internal audit for businesses that want a security program which holds up: to auditors, to customers, and to actual incidents. I build programs to be certified, and to keep passing the audits that follow.