ISO 27001 Readiness Assessment
ISO/IEC 27001:2022
Assess your Information Security Management System against the ISO 27001 control domains — governance, risk, access, resilience, and audit readiness — and see where the gaps sit before certification.
- 16 ISO 27001 control domains
- Weighted scoring — critical gaps count three times an operational one
- Instant result, scored in your browser — nothing is sent until you ask for the full report
- Roughly five minutes to complete
This is an indicative self-assessment, not a formal audit or legal advice. For a certification-grade gap analysis, talk to our team.
What the Assessment Covers
The 16 questions are grouped into three weighted tiers.
Tier 1 — Critical
Governance and accountability — weighted 3×
- Governance
- Risk Management
- Internal Audit
- Compliance
Tier 2 — High Impact
Core operational controls — weighted 2×
- Access Control
- Incident Management
- Resilience
- Vulnerability Management
- Data Protection
- CERT-In Compliance
Tier 3 — Operational
Supporting practices — weighted 1×
- Documentation
- Monitoring
- Awareness
- Asset Management
- Supplier Security
- Change Management
Other Assessment Tools
ISO 42001
AI management system readiness for responsible AI adoption.
DPDPA
India's Digital Personal Data Protection Act readiness.
GDPR
EU data protection compliance and enforcement readiness.
SOC 2
Trust Services Criteria readiness for your Type I or Type II report.
NIST CSF 2.0
Framework-neutral cyber posture check across all six CSF functions.
Ready to Close Your ISO 27001 Gaps?
Our consultants take organisations from first gap assessment through to certification and ongoing maintenance.
Talk to a Compliance Expert