The Hafnium Exchange Server Hack and its Late Effects – Prevention is the Key

The Exchange server hack from the spring of 2021, which became known as Hafnium, is spreading: numerous servers that have still not been patched are being attacked, the gap exploited, and malware installed. Many server operators report ransomware attacks that encrypt all the server’s content and demand payment of a ransom. In such zero-day attacks, […]
Cloud data center fire – are your security measures up to date?

In a data center of the cloud provider OVH in Strasbourg, millions of customer data were finally destroyed in February 2021. Apparently, the fire protection measures were not sufficient. What about your information security measures? Do you have backups of all important data at a remote location to be immune to such a disaster? For […]
SCOD – Security Consultant on Demand

Are you already familiar with our SCOD consulting service? SCOD stands for Security Consultant on Demand – and for being available to you at short notice at any time for all your information security questions. With a SCOD subscription, you can submit your inquiries to us at any time and usually receive a qualified response […]
Internal audits for your ISO 27001 ISMS

ISO 27001 requires you to conduct an internal audit of your ISMS on a regular basis to verify conformity with the standard. Although it is called an “internal audit”, you can – and should – call in external support. Especially organizations that do not have a sufficiently qualified in-house auditor can save a lot of […]
Save time and money when documenting an ISMS

Instant 27001 is a solution that saves an enormous amount of time and money when setting up and operating an ISMS according to ISO 27001. Users benefit not only from the fact that Instant 27001 already includes all necessary components – such as policies, procedures and other documents. The fact that Instant 27001 is based […]
ISO 9001 Quality Management Systems with Instant 27001 and the ISO 9001 Add-on

Did you know that numerous ISO standards are largely harmonized with regard to their core structure – chapters 4 to 10? This is true for the international standards for quality management – ISO 9001 – and information security management – ISO 27001 – and makes it possible to establish and operate integrated management systems. With […]
Vulnerability Scanning & Penetration Testing Services from TEN Information Management

Checks of IT security are useful and advisable for a variety of reasons. External reasons such as regulatory requirements – the KRITIS regulation or the IT security law are examples – may require such reviews. However, companies may also consider such reviews necessary for internal reasons, for example because certification according to ISO 27001 is […]
Documenting ISMS with Instant 27001

One of the biggest challenges in setting up and operating information security management systems according to ISO 27001 is the adequate documentation. This is subject to audit reviews and also helps the organization to appropriately control all implemented measures of the standard during daily business. Organizations that work based on Word or PDF documents often […]