< Back to case studies

Customer stories
PWD

PWD, a Digital Marketing Agency based in Australia, certified to ISO27001 for an Information Security Management System with the help of a CertiKit toolkit. PWD decided to certify to the standard to reduce information security risk, to protect their own and their client’s data, and to stand out amongst competitors. Warrun Lewis, Technical Support Coordinator at PWD shares their journey to certification.

Finding the right solution

Choosing the right compliance solution is often a difficult starting point for many organisations, and PWD considered a free toolkit solution before deciding on the CertiKit premium version. The price and reputation of the CertiKit toolkit is what swayed the decision.

The process

The ISO27001 toolkit was purchased at the beginning of the compliance journey. Warrun took the lead with input and reviews from senior management and spent on average one day per week on the project.

As with all new projects, there were some challenges faced when implementing the standard. “Navigating the large number of policies required for compliance and deciding the most appropriate method to assess and treat risks” were named as some of the biggest challenges for PWD, and they’re not alone, this is often where many organisations struggle.

But the toolkit made the process easier. “Templates to cover every required document with helpful tips about how to edit to suit an individual organisation” was cited as an invaluable feature of the toolkit, as well as the risk assessment and risk treatment spreadsheets. Warrun adds, “The document log makes managing the implementation process much easier.”

Success!

Following a nine-month implementation, PWD successfully certified to the ISO27001 standard, congratulations!

Certification has already presented several benefits to PWD. “We have significantly improved our information security by implementing controls required by the standard, and by assessing and treating our greatest risks. It has also highlighted the importance of record keeping and documentation.”

As well as internal benefits, it has made the tender process easier when completing security questionnaires. “The ISMS certification has allowed us to confidently answer questions about our security posture and the security of our business processes.”

What’s next?

Following a successful ISMS certification, PWD decided to aim for ISO9001 certification for a Quality Management System. The decision was made based on the performance in getting certified to ISO27001 and the similarities between the standards.

They’re successfully implementing the standard with help from CertiKit’s ISO 9001 toolkit and have completed the Stage One audit with their Registered Certification Body.

Best of luck PWD with your next certification!

“The ISMS certification has allowed us to confidently answer questions about our security posture and the security of our business processes.”

PWD, Australia

Reviewing ISO 27001 Toolkit

resources

Browse more customer stories

  • Saphetor SA shares how they benefited from an ISO27001 Document Toolkit and a Pre-certification Internal Audit from CertiKit.

    Read more
  • MindCraft shares how the CertiKit ISO 27001 Toolkit helped them successfully implement the ISO 27001 standard.

    Read more
  • Blue Phoenix Systems, an IT and cyber security services organisation based in Australia, use CertiKit toolkits with clients to help implement the ISO27001 standard.

    Read more
  • “The consistent formatting and style of the documents makes consolidation of various ISMS and Annex A documents very easy to achieve, reducing the overall size and complexity of the ISMS.”

    Blue Phoenix Systems, Australia

  • “It makes a big difference, for the better, when the implementer does not need to second guess and double check every template and guidance document.”

    DotSec, Australia

  • “The CertiKit toolkit was chosen because of the clear, informative writing style, ease-of-use customisable templates and unlimited email support.”

    Epiphany Healthcare, USA

  • “Using the toolkit we were able to systematically pick through and deliver all of the documentation and process areas we needed, picking up the toolkit updates as we continued through the year. We have no doubt that using the toolkit decreased the time we spent during this initial phase and still supports part of the compliance work we do every year.”

    Fishawack Health, Worldwide

  • “Our auditor said our documentation was very thorough and the CertiKit toolkit was key to passing our certification audit. Thank you for your support whenever we had questions. It was greatly appreciated as we tried to figure out this process.”

    Focused Fitness, USA