Skip to content

Open working templates

ISO 27001: start from a defensible draft.

6 templates for workshops, registers, audits and reviews. No forms, straight to the file.

Back to ISO 27001

  1. 01

    ISMS scope canvas

    MDFile in German

    Delimit services, organisation, sites, technology and interfaces in one workshop.

    Typical owner: ISMS lead · Based on: ISO, KaitoSec

    Download
  2. 02

    Register of interested parties

    CSVFile in German

    Capture requirements, relevance, owners and review triggers in a structured way.

    Typical owner: ISMS lead · Based on: ISO, KaitoSec

    Download
  3. 03

    Risk register starter

    CSVFile in German

    Scenarios, assessment, treatment, residual risk and approval in one connected table.

    Typical owner: Risk owner · Based on: ISO, ISO, KaitoSec

    Download
  4. 04

    Statement of Applicability starter

    CSVFile in German

    Applicability, justification, status, owner and evidence of effectiveness for Annex A controls.

    Typical owner: ISMS lead · Based on: ISO, ISO, KaitoSec

    Download
  5. 05

    Internal audit plan

    MDFile in German

    Prepare audit objectives, criteria, samples, interview partners and findings logic.

    Typical owner: Audit programme lead · Based on: ISO, ISO, KaitoSec

    Download
  6. 06

    Management review agenda

    MDFile in German

    Translate mandatory inputs into concrete leadership decisions with an owner and a due date.

    Typical owner: Executive management · Based on: ISO, ISO, KaitoSec

    Download