How KPS is strengthening and unifying infosec management across multiple offices using ISMS.online
Download PDFKPS helps ecommerce and other companies deliver smooth, easy digital experiences for their customers. KPS’s security-conscious clients, who deal with vast amounts of customer financial and personal data, expect a high standard of information security from KPS.
The Challenge
KPS decided to pursue ISO 27001 certification primarily because it is becoming a critical requirement for both existing and potential clients. But achieving certification was extra challenging because of KPS’s decentralised set-up — with four offices across three countries using different systems and processes due to past acquisitions.
KPS faced several challenges which hampered information security management and oversight at enterprise level:
- Varying levels of information security maturity across multiple sites
- Decentralised, siloed data held across various spreadsheets, emails, and people’s heads
- Inefficient review and approval processes via email chains
Initially, the KPS team considered using spreadsheets and SharePoint to manage the ISO certification process — but soon realised the complexity involved. They decided to invest in a specialised solution to help them efficiently implement and manage a robust information security management system, including embedding a culture of compliance.
“The main challenge was aligning three regional offices that are used to operating fairly independently and varied significantly in risk management and compliance practices — and within a tight timeframe. We had to unify everybody into a standard way of working for ISO 27001 accreditation.”
KPS
The Solution
After demoing different tools, KPS chose ISMS.online for its ease of use, compatibility with KPS’s existing single sign-on app, and comprehensive resources to help achieve ISO 27001 accreditation.
Implementing ISMS.online was straightforward. KPS staff find it easy to learn and use — even for non-native English speakers.
“ISMS.online does exactly what we need it to do. The single sign-on through our current identity management provider — rather than having to install an extra app — was a big plus which other solutions didn’t offer.”
KPS
ISMS.online provides guidance, content, control attributes, risks, and suggested controls, all ready for KPS to adopt, adapt, or add to, as required — all in one centralised, user-friendly platform. Digital signatures streamline approval processes.
“ISMS.online’s setup is great because it pushes you to be compliant straight out of the box: you need to do this, this, and this. ARM is very helpful because it guides you through each step of the ISO process in an organised way, so you can achieve certification relatively quickly but also to the required standard.”
KPS