What do we offer?

If your organization is involved in public tasks, it is crucial to develop and implement an information security management system. But your responsibility doesn’t end there – according to the Act on the National Interoperability Framework, you are required to continuously monitor, control, maintain, and improve the system to ensure the confidentiality, availability, and integrity of information. PBSG experts can help you with this!

We will conduct a KRI audit to assess the security of your information and IT systems. We will check if your information management system complies with the requirements of the ISO/IEC 27001 standard. The outcome of our work will be a report with recommendations. We ensure that the conclusions and suggestions we provide will be aligned with the specifications and domain in which you operate, and we will adapt the solutions to your existing standards and procedures. Thanks to the KRI audit, you will enhance your institution’s prestige and ensure the security of the data entrusted to you by your clients.

Leverage our experience and raise the standards of your information security management.

How do we work?

Preparation for the audit

1. Preparation for the audit

We will assign an auditing team that will collaborate with your staff. We will define audit procedures to ensure smooth information and document flow. The KRI audit is tailored to the needs of the specific unit, so you can expect us to use tools that match the nature of your organization. We will also ensure that the entire process runs smoothly and successfully, without disrupting the daily operations of your organization.

Conducting the KRI audit

2. Conducting the KRI audit

Before starting the work, we will introduce the auditing team, its role, and present the audit objectives and communication model. We will review the current situation and conduct the audit using established tools, such as document analysis, specifications, instructions, interviews, and checklists. We will analyze, among other things, the methods of ensuring security during information exchange, technical standards, as well as communication and encryption protocols.

Report with recommendations

3. Report with recommendations

You will receive a report with recommendations from us. We want your employees to gain the required knowledge in the field of information security and practical solutions, so we will ensure the report is clear, concise, and written in an accessible language. We prioritize communication and partnership, so we will answer all questions and clarify any ambiguities.

Post-audit actions

4. Post-audit actions

We want to be your partner, one you can rely on for expertise and support at every stage of cooperation. Our KRI audits are thorough, detailed, and robust, and you can count on our continued assistance, for example, in implementing an information security system or applying corrective actions outlined in the report. We care about your satisfaction and the security of your organization’s operations, which is why our auditors and coordinators are at your disposal.

Let's talk about your project! Fill out the form

Why us?

Knowledge and experience

Knowledge and experience

Our team has gained extensive experience in KRI audits over many years of working on projects across various industries and organization sizes.
Individual approach

Individual approach

When conducting the KRI audit, we take into account the specifics of your organization and its market context.
Convenient conditions

Convenient conditions

We adjust the scope and schedule of information security services to fit your budgetary capabilities.
Business-oriented approach

Business-oriented approach

We focus on a practical approach to information security management, grounded in and adapted to the Polish context.

They trusted us

Key questions about the KRI audit