NEW · The Founders' Circle Grant — full-platform access for select companies. Redeem a grant →
Compliance · ISO 27001

ISO 27001:2022 certification readiness, all 93 Annex A controls covered.

Full 93-control coverage of the ISO 27001:2022 Annex A taxonomy. Gap analysis, ISMS scoping support, certification readiness assessment, and cross-framework propagation from SOC 2 evidence.

What ISO 27001 requires

How Verisq covers ISO 27001.

ISO/IEC 27001:2022 · 93 Annex A controls, certification readiness

2022 revision coverage

Updated for the 2022 revision — 93 controls organized into Organizational, People, Physical, and Technological themes.

ISMS scoping support

Define your ISMS scope inside Verisq, identify in-scope assets and processes, and track risk treatment plans.

Cross-framework propagation

Evidence uploaded against ISO controls automatically credits corresponding SOC 2 TSC and NIST CSF controls.

Certification readiness

Pre-audit gap report and Statement of Applicability draft generated from your assessment results.

What you take to the audit

Outputs auditors and regulators expect.

Statement of Applicability (SoA)

Generated from your control selections and justifications — the document your certification body asks for first.

Risk treatment plan

Per-risk treatment options (accept / mitigate / transfer / avoid) with task assignment and tracking.

Certification readiness report

Branded PDF showing per-control status, evidence inventory, and remediation backlog.

Industries

ISO 27001 relevance.

Technology Saas Financial Services

Stop building ISO 27001 evidence in spreadsheets.

Verisq generates the artifacts your auditors and regulators expect — on demand, with current data, with framework mappings embedded.

See pricing Sign in to platform