Compliance
Compliance audit
We audit whether the arrangement you built actually runs, prioritise the findings, and track their closure.
- KVKK
- ISO/IEC 27001
- ISO/IEC 27701
The most common thing after implementation is quiet erosion: the inventory goes stale, reviews get skipped, disposal does not happen. An audit exists to see that before an external auditor does.
Scope
Checking whether the inventory, texts and policies are current
Verifying processes through their records (requests, disposal, access review)
Sample-testing technical measures
Prioritising findings and assigning owners
What we deliver
Audit report
Findings listed by severity
Corrective action plan
Closure tracking table
The process for this service
Plan
Audit scope and sample are decided.
Examination
Verification is done through documents and records.
Findings
Findings are classified by severity.
Follow-up
Corrective actions get owners and closure is tracked.
Questions about this service
Our products supporting this service
Other services in the same pillar
- KVKK compliance programme
- Policies, procedures and texts
- Personal data risk analysis
- VERBIS registration and updates
- Outsourced data protection officer
- Data subject request management
- Retention periods and disposal
- Cross-border data transfers
- Awareness training
- ISO 27001 implementation and audit readiness
- ISO 27701 privacy information management system
See where you stand in 20 minutes
The free initial assessment maps your current state and tells you which step should come first. You are not committed to anything afterwards.
Look at it yourself first
A twenty-five question KVKK compliance test with per-area scores and a priority recommendation. No sign-up.
Start the compliance testLet's look together
We discuss your current state and work out which step comes first and how long it takes.
Request a conversation
