Simplify your ISMS journey and get certified faster

All in one toolkit with document templates, guides and support from experts to build up your ISMS & get certified faster than ever.

Trusted by over 700 Businesses

clients-01
Close
star-ratings

The documents provided by ISMS Connect were easily adaptable to our company and fully covered the TISAX-Needs. The additional advice from Christopher made the recertification process much easier for us. Many thanks to the team!

Daniel Hilf / Chief Operating Officer • SCHACHZUG®
clients-02
Close
star-ratings

Through the dedicated support, we were able to achieve a maximum maturity level of 3,0 in the TISAX audit. ISMS Connect has enabled us to bring ourselves to a high level of information security in a short time in order to be able to support our customer even more reliably. ISMS Connect has enabled us to reach a high level of information security in a short time in order to be able to support our customers even more reliably.

Gereon Borgwardt / Information Security Officer • borisgloger consulting GmbH
clients-03
Close
star-ratings

Thanks to ISMS Connect, we were able to build up all the relevant processes and the necessary know-how to achieve ISO® 27001 certification within a very short time. Especially the clear structure, intuitive templates and tools helped us to integrate the knowledge around information security in our own company.

Magnus Schückes / Managing Director • Elona Health GmbH
clients-04
Close
star-ratings

The ISMS toolkit helped us to build up the required knowledge as fast as possible and to document our processes and policies in a TISAX®-compliant manner, as well as to make improvements where required. The consulting provided by the ISMS Connect team was very helpful and, since we built our ISMS ourselves, the optimal preparation for the certification audit.

Frederik Lentjes / Team Lead Cloud Security & Compliance • utilitas GmbH
clients-05
Close
star-ratings

We aimed for a lean and powerful information security management system to secure but not overwhelm our small consulting business. Supported by ISMS Connect we created an ISMS that serves our purpose and we passed the audit successfully in the first attempt.

Marvin Müller / Information Security Officer • explayn consulting GmbH
clients-06
Close
star-ratings

As a global provider of a cloud-based DAM solution, we have a commitment to security. The Toolkit helped us save a tremendous amount of time in proving it. We are now proudly TISAX® certified, and we will definitely use ISMS Connect again next time. Thank you!

Sébastien Levy / COO • WEDIA GROUP
clients-07
Close
star-ratings

With the help of your expertise and advice, we were able to understand and meet the requirements more quickly. ISO® 27001 could be implemented immediately and the certification body attested us excellent preparation.

Olaf Pätz / CEO • Outerscore GmbH
clients-08
Close
star-ratings

Thank you for all your help and for making ISMS Connect available for users like us! With the help of ISMS Connect we quickly achieved our project target and passed the TISAX® audit successfully. I hope you continue to be successful!

Nicholas Antzaras / Business Analyst • The Narmco Group
clients-09
Close
star-ratings

A great product from ISMS Connect, which is optimal for achieving certification quickly and cheaply. The pragmatic tips were also very good, helpful, and are cost-effective solutions. This enabled us to pass the certification successfully, and the entire ISMS implementation could be carried out very quickly.

Henning Westerwelle / CEO • Curious Company GmbH
clients-10
Close
star-ratings

Great support in setting up our ISMS and preparing for the certification. The ISMS Connect team has supported us with their super usable templates and helped us repeatedly with technical assistance and good suggestions. Keep up the great work!

Dr. Jan-Marc Lischka / Co-Founder • 5thIndustry GmbH
clients-11
Close
star-ratings

We found it very enriching to achieve our planned certification so quickly and with such a high level of quality with the help of the toolkit and the great advice. Thanks a lot for this support.

Klemens Vatterodt / Team Lead Service Delivery • Haiilo GmbH
clients-12
Close
star-ratings

Certification according to VDA®-ISA/ TISAX® would not have been achieved so quickly if we had not used the great ISMS Toolkit templates. Moreover, the helpful and friendly advice we received was a great help and was also a lot of fun. Many thanks for this.

Anika Merkel / Manager • cyber-Wear GmbH

Compliance from scratch is hard

It requires professional guidance, specialist expertise, and can take months – or even years – to implement & consultants are often expensive.

1

Costly for Businesses

ISMS requirements are extensive, making it expensive for startups and small businesses.

2

Time-Consuming

Implementing ISMS is complex, and most organizations struggle with where to begin.

3

Overwhelming to do Alone

Even with some knowledge, it’s easy to get stuck and feel overwhelmed when doing it yourself.

4

Consultants Are Expensive

Consultants charge high fees and often require additional onboarding costs.

ISMS Connect fixes this

With our All-in-One Toolkit, we empower you to implement an ISMS and get certified affordably. We share everything with you: Our ready-made documents and detailed guides contain expert tips making sure you have everything needed for success.

screen-isms-01
icon-isms-01

Toolkit for a fixed price

ISMS Connect offers an All-in-one-Toolkit with everything you need for a fixed, affordable price.

icon-isms-02

Readymade documents

All Document templates are readymade for SMBs. Get your ISMS audit ready in weeks!

icon-isms-03

Expert Knowledge

Our Expert pre-filled templates and clear guides empower you to implement your ISMS yourself.

icon-isms-04

Unlimited Support

We’re here with you every step of the way with unlimited support by expert consultants.

We found it very enriching to achieve our planned certification so quickly and with such a high level of quality with the help of the toolkit and the great advice. Thanks a lot for this support.

Klemens Vatterodt
Team Lead Service Delivery at Haiilo GmbH
  • Passed the audit successfully
  • Proudly certified

Get the complete ISMS Toolkit

Unlock a faster, easier path to compliance with our all-in-one toolkit with everything you need for your success.

  • ISMS Documents & Templates
  • Step-by-step
    Guides
  • For ISO® 27001 & VDA® ISA / TISAX®
  • Unlimited
    Consultant Support

Our Success Formula for your ISMS

60+ Document Templates

Get all the documents you need to implement your ISMS and meet ISO® 27001 & TISAX® requirements. Our templates are pre-filled with practical examples from real processes, helping you jumpstart your project with ease and efficiency.

Search for all management documents...

Suggestions

  • document-1 Definition of Scope Guidance documents
  • document-1 Risk management procedure Risk management procedure
  • document-2 Risk assessment Risk assessment
  • document-1 Training concept Control documents
  • document-2 Audit program Audits

Step-by-Step Guides

Just open the guide, and you’ll get a clear explanation and to-do list for every ISO® 27001 or TISAX® requirement. You’ll see a simple breakdown of tasks and steps, helping you meet all the requirements with ease. Our document templates work seamlessly with these guides, making the entire process even more straightforward. Oh, and we’ve got everything you need to fill your ISA Assessment too.

  • icon-1

    Documentation and Implementation

  • icon-2

    Everything is explained

  • icon-3

    Document templates for every Step

  • icon-4

    Checklist for each chapter

Consultant Support

I’m here to offer you unlimited support from start to finish. Whether through live chat, our community, or private consulting, you’ll always have direct access to the help you need. With over 1,200 projects completed and more than 700 satisfied clients, I’ll guide you through every challenge to ensure your success.

icon-brand
christopher-eller
Christopher Eller
Founder and Consultant at ISMS Connect

1,200 projects completed 700+ satisfied clients

icon-5

Live Chat & Community

icon-6

Private Consulting

icon-7

Pre-audit Documentation Check

Limited Offer

Access Free Policies Now

Get instant access to the Information Security Policy, Backup Policy, HR On-Off-Reboarding Checklist, and HR Security Policy & our Guides for ISO® 27001 & TISAX®.

pattern-with-img

Trusted by Businesses Like Yours

We are independent Experts Simplifying Compliance

I started ISMS Connect to empower any organization to easily and affordably adopt information security management. All our knowledge is shared with our customers, ensuring that everyone can benefit from streamlined compliance - without paying big time for consultant projects.

– Christopher Eller, Founder of ISMS Connect

  • TÜV® SÜD Certified Christopher Eller is TÜV® SÜD Certified as ISO® 27001 Auditor, DPO & Risk Manager.
  • IRCA-Certified Lead Auditor Bennet Vogel is TÜV® Rheinland certified ISO for TISAX®.
  • TÜV® Rheinland certified Bennet Vogel is an IRCA-Certified Lead Auditor for ISO® 9001 & ISO® 27001.
christopher-eller
Christopher Eller

ISMS Connect's founder, and an InfoSec professional with 14+ years of experience across IT, security, compliance and automotive industries.

bennet-vogel
Bennet Vogel

Partner & Consultant for information security with 16+ years experience in the financial and IT industry.

Most Popular

Plus

For companies that want access best-in-class resources.

$109
per month, billed annually at $1308
Streamlined Compliance Journey

From start to end, we support you through your journey to successfull certification.

All ISMS Documents

Ready-made, easy to edit document templates that cover all the requirements of ISO 27001® and VDA® ISA / TISAX®. All Content is available in English & German.

Compliance Updates

All ISMS Connect-Content gets updated regularly to reflect changed norm requirements, new best practices and new audit conventions.

Step-by-Step Guides

Step-by-step guides that helps you through every requirement of VDA® ISA / TISAX® & ISO 27001®.

Unlimited Requests

You can directly contact a consultant for special requests or requests with confidential information in written at any time.

Pro

For those who want access to an consultant whenever needed.

$159
per month, billed annually at $1908
Streamlined Compliance Journey

From start to end, we support you through your journey to successfull certification.

All ISMS Documents

Ready-made, easy to edit document templates that cover all the requirements of ISO 27001® and VDA® ISA / TISAX®. All Content is available in English & German.

Compliance Updates

All ISMS Connect-Content gets updated regularly to reflect changed norm requirements, new best practices and new audit conventions.

Step-by-Step Guides

Step-by-step guides that helps you through every requirement of VDA® ISA / TISAX® & ISO 27001®.

Unlimited Requests

You can directly contact a consultant for special requests or requests with confidential information in written at any time.

Frequently asked questions

Everything you need to know about the product and billing.

Which security standards does ISMS Connect support?

ISMS Toolkit is a collection of tools & templates designed to help you implement an information security management system (ISMS) compliant with the two most popular security standards: ISO 27001 (the international standard for information security management) and VDA® ISA (TISAX®) (the information security standard for the automotive industry).

What is VDA® ISA (TISAX®)?

TISAX® (Trusted Information Security Assessment Exchange) is an information security standard tailored to the needs of the automotive industry. It's a standard that vehicle manufacturers, automotive suppliers, IT service providers, consultants and third-party software vendors can use to meet their information security requirements for automobile production. TISAX® certification is a compulsory requirement for many automobile manufacturers and suppliers to the German automotive industry.

The TISAX® is based on an Information Security Assessment (ISA) developed by the VDA® (Association of the Automotive Industry), which was first used by member companies of the VDA® for inspections of suppliers and providers whose companies process sensitive information. The goal of the TISAX certification is to increase transparency in the automotive industry by certifying suppliers based on their ability to secure critical data.

TISAX® in its core is based on essential requirements of ISO 27001 international information security standard, but is more specific to automotive and reflects automotive-specific topics, such as external communication channels and interfaces.

Can TISAX® and ISO 27001 audit be combined?

Yes, the TISAX® and ISO 27001 audits can be combined. To do so you should choose audit body certified approved for ISO 27001 and TISAX®. This allows both assessments to be carried out simultaneously and save time and efforts.

Do you provide ISO or TISAX® certification?

No, we don't offer certification. Our goal is to help you set up an information security management system yourself with ISMS Toolkit and prepare your organization for the certification audit. To arrange certification, you need to contact a Registered Certification Body (RCB) in your region who will conduct a two-stage audit to verify that you are compliant with standard requirements.

How much does it cost to implement ISO 27001?

Small companies with fewer than 100 employees can expect to pay around €10,000 to an certification body.
We help all customers of ISMS Connect to choose a fair offer of the certification body.

Additionally, a consultant can charge up to 50.000€ for a small or medium sized project to help you implement all requirements.

ISMS Connect is designed to eliminate large money, time, and human resource spending on reinventing the wheel by using proven ready-made templates and processes. Focus on what is essential for your life and business instead. Prevent thousands spent on consultants delivering the same toolkit and save over 90% compared to the cost of ISMS consultant with no effect on the documentation quality and business outcomes.

Can my organisation implement ISMS ourself?

Absolutely! We believe information security doesn't need to be hard. Our goal is to give companies the tools they need to tackle the topic of “information security” themselves. ISMS Connect designed to help you implement ISMS yourself with step-by-step guidance and support without time and budget consuming external consulting services.

Can my organisation implement ISMS ourself?

Absolutely! We believe information security doesn't need to be hard. Our goal is to give companies the tools they need to tackle the topic of “information security” themselves. ISMS Connect designed to help you implement ISMS yourself with step-by-step guidance and support without time and budget consuming external consulting services.

Are all ISMS documents mandatory to have?

We suggest to! Most of the documents described in security standards are mandatory. These documents act as proof of a proper Information Security Management System. To verify your compliance auditor will review all the ISMS documentation, which means that what is not written down in your documentation needs to be proven in another way. Having all required ISMS documentation in place is a key element of successful security standards certification.

What happens if we don't pass the audit?

The audit gives you the opportunity to see how your information security management system (ISMS) stacks up to the requirements of ISO 27001 or TISAX®. The risk of not passing the audit is very real. If your information security management system (ISMS) is not in line with the requirements of ISO 27001 or TISAX®, you run the risk of non- compliance, which could lead to hefty financial penalties or even losing customers. This is why you need a plan in place so that you can be as prepared as possible before going into the audit.

Internal audit:
Internal audit can't be failed but can lead to poor results. There is no direct influence on the external audits besides consuming time. The most common result is remedy discrepancies, so you need to re-do it. To do so you can always contact us to look into results to remedy discrepancies and help you to come up with a better solution.

External audit:
The audit can result in one of three possible outcomes: compliance, temporary certificate, or non-compliance. The most common one is compliance. This is where everything is in order and there are no outstanding issues. However, sometimes an organization will receive a temporary certificate due to outstanding issues that need addressing. The last outcome is non-compliance. This means you're not audited properly or your systems don't meet the requirements, so you require at least one improvement action before the next audit date.

ISMS Connect includes an Pre-Audit Check to ensure that your organization is audit-ready.

What payment options do you support?

You can pay by credit card or via SEPA direct debit.

Doi need a subscription to use the documents?

No, you can use the documents in your own organization without any restrictions after downloading - even after cancelling the subscription.

What is ISO 27001?

1SO 27001 s a leading international information security standard, specifying the requirements for an organization's information security management system (ISMS). An ISMS is a documented set of policies, procedures, processes, and controls that are designed to address all aspects of information security within your organization. The standard was first published in 2005 and has been updated incrementally since then. ISMS is based on the fundamental concepts of information security including people, processes, and technology. ISO 27001 is recognized by governments and regulatory agencies across the globe. We've created this toolkit to help you get up and running with ISO 27001 quickly and easily, using best practice documentation methods.

How to become TISAX® assessed?

Companies looking to certification must register with ENX® as a participant on the TISAX® online portal and at least one TISAX® Assessment Scope. TISAX® participation process contains multiple steps:

- Preparation. Research and study TISAX® requirements.
- Registration. Register on the TISAX® portal, select auditing body and prepare for audit.
- Self-assessment. Internal process to measure current level of compliance.
- Initial assessment. Audit execution depends on your qualifying for remote (Level 2) or physical (Level 3) audit.
- Assessment includes auditor interview, documentation review, and clarification of possible gaps and next steps.
- Corrective action plan. This step includes the preparation of an action plan to correct any initial audit finding (gaps) and submitting it to the audit provider.
- Follow-up. After corrective action plan is submitted it assess through follow up and TISAX® report.
- Reporting and exchange. The auditor providers upload results of the audit to the TISAX® platform and the audited company decides how would they like to share the results with selected suppliers and service providers. The audited company also receives TISAX® labels from ENXe.

Do | need to get a copy of the ISO 27001 or VDA® ISA standard?

Yes. We would recommend getting a copy of the resepective standard itself from the ISO® official website (or Beuth) and VDA® ISA website. First of all without one, you may find that you spend more time than necessary trying to locate answers to your questions. Having the actual source document will help you better understand all the information needed for the implementation process.

And secondly during the certification process you will need to show auditor which criteria your ISMS is built against, so defacto it's required for certification.

How long does it take to get X certified?

Normally, the whole process can take up to 12-18 months depends on the size and complexity of your organization, and there are a number of stages that need to be completed before you can be standard certified. Even though many organizations focus on Information Security, the implementation of ISMS is not easy for everyone. There is a lot of work involved to prepare for an audit and be ready for certification. Even more without proper planning, the cost of certification can be extremely high with little to no return on investment.

In the same time, from our practice we know it's possible to achieve certification much faster (3-6 month) and with less expenses. And a lot of our customers actually do that. ISMS Toolkit helps you cut certification time from 11,5 year to a few month saving thousands of budget in the process.

In addition, there are several more conditions that you should to consider:

Having an information security responsible / project manager that is ISO or IT from start that is commited and can work every day or every other day on ensuring that tasks are carried out and defined processes are taken in place.

Top management must commit and transfer responsibility to release documents to this person. Having an existing cert. like 9001 helps to achieve best target of 3-4 months.

Size of organization has lower impact (e.g. 100-500 employees often the same), more number of locations is a bigger impact.

Motivation to adopt new processes thorough departments.

Close working with HR & IT.

How much does it cost to implement TISAX®?

Small companies with fewer than 100 employees can expect to pay around €4000 to an certification body for an AL2 assessment.

We help all customers of ISMS Connect to choose a fair offer of the certification body.

Additionally, a consultant can charge up to 50.000€ for a small or medium sized project to help you implement all requirements.

ISMS Connect is designed to eliminate large money, time, and human resource spending on reinventing the wheel by using proven ready-made templates and processes. Focus on what is essential for your life and business instead. Prevent thousands spent on consultants delivering the same toolkit and save over 90% compared to the cost of ISMS consultant with no effect on the documentation quality and business outcomes.

Where should we start when implementing the ISMS?

Doing the wrong things for the right reasons is still doing the wrong things. Without a clear strategy, step-by-step plan, and the help of a third party, achieving certification take months of research, trial, and error. That's why we created ISMS Connect.

ISMS Connect gives you clear overview of the whole process.

Where should we start when implementing the ISMS?

Doing the wrong things for the right reasons is still doing the wrong things. Without a clear strategy, step-by-step plan, and the help of a third party, achieving certification take months of research, trial, and error. That's why we created ISMS Connect.

ISMS Connect gives you clear overview of the whole process.

See exactly what needs to be done. A well- organized and structured system that gives you an overview of the full scope, timeline all information you need. Get a clear understanding of how much technical work is to be done so you can plan and estimate your project before going into detail.

Do we need to hire a security officer?

Yes, but can be a variety of persons like IT manager, quality manager, or something close to IT, Data protection officer also possible. We are pleased to help you find the right person for this job.

Can you help with audit?

Yes, we can help you with audit preperation and preparing the assessment. In addition to support and assistance through the process, we would be happy to advise and support you with audits with our customizable service options.

How do we get access?

After payment, you can login with your credentials to access your user account and all content in your plan. If you pay by credit card, your access is instantly available.

Can my organisation implement ISMS ourselves?

Of course. We believe information security doesn't need to be hard. Our goal is to give companies the tools they need to tackle the topic of "information security” themselves. The ISMS Toolkit is designed to help you implement ISMS yourself with step-by-step guidance and support without time and budget consuming external consulting services.

ISMS Connect is an independent X consultancy and not affiliated with ENX® TISAX®,VDA® ISA, ISO® or DIN®.

ISMS Connect is an independent consultancy and not affiliated with ENX® TISAX,VDA® ISA, ISO® or DIN®.

ISMS Connect company is not a part and not affiliated with any other company. Additionally, This site is NOT endorsed by any other company including those listed below.

TISAX® is a registered trademark of the ENX Association.VDA® is a registered trademark of Verband der Automobilindustrie.ISO® is a registered trademark of the International Organization for Standardization.DIN® is a registered trademark of Deutsches Institut fiir Normung (German Institute for Standardisation).

christopher-eller
bennet-vogel

Still have questions?

Can’t find the answer you’re looking for? Please chat to our friendly team.

Get the complete ISMS Toolkit

Unlock a faster, easier path to compliance with our all-in-one toolkit with everything you need for your success.

  • ISMS Documents & Templates
  • Step-by-step
    Guides
  • For ISO® 27001 & VDA® ISA / TISAX®
  • Unlimited
    Consultant Support