Information Security

ISO 27001.

With ISO 27001 certification, you can ensure long-term information security and compliance within your organization.

class="img-responsive
Information SecurityMay 6, 2026, 3:59:03 p.m.

All services at a glance:

class="img-responsive

ISO 27001

  • Implementation of an ISO 27001-compliant Information Security Management System (ISMS)

  • Conducting an initial GAP analysis

  • Development of all ISO 27001 policies and documentation

  • Risk Assessment and Risk Treatment Plan

  • Definition of technical and organizational security measures

  • Support for the implementation of ISO 27001 controls

  • Establishment of a structured asset and permissions management system

  • Development of emergency and recovery plans

  • Conducting employee training and awareness sessions

  • Preparation for and support during the certification audit

  • Support for supplier and third-party evaluations

  • Ongoing maintenance and further development of the ISMS

  • Consulting services provided by experienced information security and compliance experts

  • Optional use of our data protection and compliance management software

The advantages for your company

0 years
Experience
0 Clients
as data protection officer
0 Offices
in Germany

More than 450 companies rely on legal data

Customer reviews & experiences about legal data Schröder Rechtsanwaltsgesellschaft mbH. Show more info.
class="img-responsive
class="img-responsive
class="img-responsive
class="img-responsive
class="img-responsive

Publications

class="img-responsive
class="img-responsive

Our employees regularly publish scientific papers and are authors and editors of authoritative works on data protection law.

Insurance concept

class="img-responsive
class="img-responsive

Together with Markel SE and Nürnberger Versicherung, we have developed an insurance concept for the activities of the data protection officer with cover of more than EUR 40 million.

Training platform

class="img-responsive

With our own legal data academy training platform, we ensure the implementation of the legal training requirements of the GDPR.

24/7 emergency center

class="img-responsive

Clients that we support as an external data protection officer are given a number to our 24/7 emergency center. Data protection breaches can be recorded there around the clock and it is ensured that the necessary notification to the authorities is made within 72 hours.

Questions about our services

What are the costs associated with ISO 27001 consulting?May 6, 2026, 3:49:45 PM

The cost depends on the size of your company, the complexity of your IT infrastructure, and the scope of certification you require. We would be happy to provide you with a customized, fixed-price quote within 24 hours.

What are the benefits of ISO 27001 certification?May 6, 2026, 3:50:37 p.m.

ISO 27001 certification strengthens information security, reduces risks, and builds trust among customers, partners, and regulatory authorities. At the same time, it helps streamline internal processes and ensure compliance with regulatory requirements.

What is the process for an ISO 27001 project?May 6, 2026, 3:51:35 p.m.

The project typically begins with a GAP analysis. This is followed by a risk analysis, the implementation of the ISMS, the preparation of the necessary documentation, and preparation for the certification audit.

How long does it take to implement an ISMS in accordance with ISO 27001?May 6, 2026, 3:52:03 p.m.

The duration depends on the size and complexity of the organization. In many cases, a certifiable ISMS can be established within a few months.

Which companies need ISO 27001?May 6, 2026, 3:54:32 p.m.

ISO 27001 is particularly well-suited for organizations with high standards for information security, data protection, and compliance—such as those in the IT, software, healthcare, finance, manufacturing, or critical infrastructure sectors.

Do you also provide support for ISO 27001 certification?May 6, 2026, 3:55:35 PM

Yes. We support companies throughout the entire project—from the initial analysis through to the successful preparation for and support during the external certification audit.

What documents and guidelines are being developed?May 6, 2026, 3:56:09 p.m.

We assist with the development of all necessary policies and documentation, including security policies, risk analyses, asset management, access control frameworks, emergency plans, and ISMS documentation.

Can ISO 27001 be combined with data protection and NIS2?May 6, 2026, 3:56:53 PM

Yes. ISO 27001 can be seamlessly integrated with GDPR data protection requirements as well as regulatory requirements such as NIS2 or DORA, creating synergies and more efficient processes.

class="img-responsive