Governance

Cyber Security Risk Assessment and Management
This Service comprises of establishing a tailored risk methodology for to assess, evaluate, modify and mitigate the cyber security risk for an organization.During risk assessment critical organizational services are identified, and related information security threats and vulnerabilities are determined and eventually risk is evaluated. A mitigation plan is established to address the information security risks which are not acceptable. At the end of engagement a comprehensive report will be created to summarize all risks, their values, mitigation plans, risk owners and due dates.

Cyber Security Policies & Procedures
I(TS)² helps organizations help develop policies and procedures that sets out a framework of governance and accountability for information security management commitment across an organization.
Procedures describe how each policy will be put into action in the organization, and gives a detailed step-by-step how to fulfill a specific task or activity.

Information security Organization
This service involves facilitatingour clients to establish, implement, manage, maintain following management systems:
- Establishing Cyber Security structure and hierarchy in an organization
- Establishing Cyber Security roles and responsibilities and explicit assignment for the employees (RASI)
- Identifying key roles and responsibilities for main roles in security program such as CIO, Security Manager, Security Unit, end users.

Standards Establishment, Implementation & Certification
This service involves facilitating our clients to establish, implement, manage, maintain following management systems:
- ISO 27001- Information Security Management System
- ISO 22301 – Business Continuity
- ISO 20000 – Service delivery Management
- We ensure that all the requirements for certification are well met and facilitate organization to achieve desired management system certification