information-security-manager-iso27001

Implement ISO 27001-compliant ISMS for healthcare organizations.

Updated Apr 16, 2026
One-click install
npx skills add https://github.com/devCharuzu/philfida-taskmanage --skill information-security-manager-iso27001-devcharuzu
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: information-security-manager-iso27001
Source: https://github.com/devCharuzu/philfida-taskmanage/tree/main/.windsurf/skills/information-security-manager-iso27001
Command: npx skills add https://github.com/devCharuzu/philfida-taskmanage --skill information-security-manager-iso27001-devcharuzu

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes scripts (resource) and references (resource) components.

What problem does it solve?

ISO 27001-aligned ISMS design and governance for healthcare organizations, enabling compliant information security management and risk oversight.

Core Features & Use Cases

  • ISMS design and governance: Design, implement, and maintain an ISMS aligned with ISO 27001:2022, including healthcare-specific controls.
  • Security risk assessment & control mapping: Conduct risk assessments, map risks to controls, and prepare for certification.
  • Certification, audit & compliance: Prepare for ISO 27001 certification, security audits, and ongoing compliance verification.
  • Healthcare security coverage: Addresses healthcare data security and medical device cybersecurity.

Quick Start

Initiate an ISMS risk assessment across your organization using the risk_assessment.py tool to begin the risk register.

Frequently Asked Questions about information-security-manager-iso27001

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I implement an ISO 27001 ISMS for a healthcare organization?

ISO 27001 ISMS implementation for healthcare involves designing governance structures, conducting risk assessments, and mapping risks to controls. The Skill provides scripts to initiate risk registers and align with ISO 27001:2022 and healthcare security standards.

What is included in an ISO 27001 risk assessment for medical device cybersecurity?

An ISO 27001 risk assessment for medical device cybersecurity identifies threats, evaluates vulnerabilities, and maps risks to controls. The Skill provides scripts and reference guides to generate risk registers and verify compliance with healthcare security obligations.

Can I use this to prepare for an ISO 27001 certification audit?

Yes, you can prepare for ISO 27001 certification audits by mapping implemented controls to ISO 27002 standards and verifying ongoing compliance. The Skill provides reference documentation and governance frameworks to ensure audit readiness for healthcare organizations.

How do I map security risks to ISO 27002 controls?

You map security risks to ISO 27002 controls by evaluating threats from your risk register and applying corresponding healthcare-specific control categories. The Skill facilitates this mapping to ensure risk oversight and compliance verification.

Does this support incident response planning for healthcare data security?

Yes, it supports incident response planning for healthcare data security by integrating response protocols into the ISMS framework. This ensures governance obligations are satisfied during security incidents involving medical device cyber threats.

What are the limitations of using an ISO 27001 ISMS for healthcare compliance?

The ISO 27001 ISMS Skill focuses on ISO 27001, ISO 27002, and healthcare security frameworks, meaning it may not cover non-ISO regional regulations. It provides scripts and references for deterministic governance tasks but requires manual integration for localized compliance.