top of page

FRAMEWORKS

HOW does one decide which framework or best practice addresses the SOHO information Security need?

In the security industry, there are many frameworks.  In fact There are about 250 different security frameworks used globally developed to suit a wide variety of businesses and sector needs. There's the International Standards Organization (ISO 27001/27002) which is a widely known mature framework that can be used across a wide range of types and sizes of businesss. There is COBIT5 which provides a high level structure for building governance that is risk mitigation centric while aligning IT with Business goals.  And, of course, there is NIST which contains a collection of information security standards and best practices.  Least we forget, the Industry-Specific Standards such as PCI DSS (for credit card handling), HIPAA (safeguarding health/medical information) as well as newcomer local regulations such as the European GDPR (General Data Protection Regulation).

​

When the ism4soho.org was conceptualized, it was founded on several beliefs about the SOHO and its Information Security posture:  

1) The Small Office/Home Office is an underserved Market
2) Because of #1, things can be done alot better.
3) Your digital security is only as safe as the least safe company you do business with or the least safe device you use.

​

So what does ism4sohos' frameworks do for you?



It keeps you right where you should be - engaged in your business and responsible for making decisions.   ism4soho.org has cut through the daunting effort of deciding which framework and best practices apply to SOHO organizations such as yours.  We have tailored an Information Security assessment program that will provide a systematic review of your technology supporting your business processes.  The final result is a score card of your current security posture including potential remediation solutions.  This means you can make informed decisions based upon a foundation of fact.  


  So Which one is right for you? 

​

​

ISSOHO

Is a tailored assessment program for multi-employee organizations that work at the home or small office.  It's focus is on businesses that have complex technology infrastructure (mail, web, application servers) to simple; one to many vendor/supplier relationships; Accepts credit cards for payments of services.

doing work together

ENDPOINT

Hardening the End-Point: The home is the furthest extension of the Enterprises or SOHO network.  Yet it pales in comparison to the security environment provided by an Enterprise organization.  ENDPOINT - recognizes this concept and has a lite version of the Information Security assessment.  It is a tailored for the home or single employee that works out of their home.  The end point equipment is your average home equipment (desktops, laptops, cell-phones where internet services are installed.

green papers
Frameworks: Project

©2018 by ism4soho. Proudly created with Wix.com

bottom of page