- Home
- Companies
- DNV GL - Business Assurance North ...
- Services
- Information Security Services
Information Security Services
Information is a vital asset of any organization and confidential customer information entrusted to it brings special obligations. Unauthorized access to important information and knowledge capital, or its loss, can have significant negative impact on an organization, including interruption of business continuity, loss of strategic advantage, vulnerability to fraud, and damage to reputation.
A certified information security management system demonstrates commitment to the protection of information and provides confidence that assets are suitably protected – whether held on paper, electronically, or as employee knowledge.
Expectations towards organizations protecting important information are ever present but often the means of assurance is not apparent. Significant incidents involving losses and fraud continue to make the headlines and cause concerns for customers and consumers in general. Consequently, customers, boards and other stakeholders, including the public, are increasingly demanding evidence of robust and effective information security and business continuity measures.
Information security management systems take a systematic approach to minimizing the risk of unauthorized access or loss of information and ensuring the effective management of protective measures put in place. They provide a framework for organizations to manage their compliance with legal and other requirements, and improve performance in managing information securely.
ISO 27001 is the most common and globally recognized standard for information security management systems and is applicable to any organization in any business sector.
The standard provides a comprehensive approach to security of information needing protection, ranging from digital information, paper documents, and physical assets (computers and networks) to the knowledge of individual employees. Subjects to address include competence development of staff, technical protection against computer fraud, information security metrics and incident management as well as requirements common to all management system standards such as internal audit, management review and continuous improvement.
DNV also offers certification of your security system to the World Lottery Association (WLA) Security Control Standards. WLA standards are tailor-made for the security systems of lottery operations. To be eligible for certification, you have to be a member of WLA.
ISO 27001
An ISO 27001 certificate proves that your information security management system has been certified against a best practice standard and found compliant.
