ISO 27001 Readiness Assessment

ISO/IEC 27001:2022

Assess your Information Security Management System against the ISO 27001 control domains — governance, risk, access, resilience, and audit readiness — and see where the gaps sit before certification.

  • 16 ISO 27001 control domains
  • Weighted scoring — critical gaps count three times an operational one
  • Instant result, scored in your browser — nothing is sent until you ask for the full report
  • Roughly five minutes to complete

This is an indicative self-assessment, not a formal audit or legal advice. For a certification-grade gap analysis, talk to our team.

Cyberfyx
Cyberfyx Compliance Advisor
ISO 27001 Readiness Assessment
ISO 27001 Evaluation

What the Assessment Covers

The 16 questions are grouped into three weighted tiers.

Tier 1 — Critical

Governance and accountability — weighted 3×

  • Governance
  • Risk Management
  • Internal Audit
  • Compliance

Tier 2 — High Impact

Core operational controls — weighted 2×

  • Access Control
  • Incident Management
  • Resilience
  • Vulnerability Management
  • Data Protection
  • CERT-In Compliance

Tier 3 — Operational

Supporting practices — weighted 1×

  • Documentation
  • Monitoring
  • Awareness
  • Asset Management
  • Supplier Security
  • Change Management

Ready to Close Your ISO 27001 Gaps?

Our consultants take organisations from first gap assessment through to certification and ongoing maintenance.

Talk to a Compliance Expert