information-security-manager-iso27001

Design and implement ISO 27001/27002-aligned ISMS for HealthTech and MedTech organizations.

Updated Feb 13, 2026
One-click install
npx skills add https://github.com/mwathiben/PropManager --skill information-security-manager-iso27001-mwathiben
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: information-security-manager-iso27001
Source: https://github.com/mwathiben/PropManager/tree/main/.claude/skills/information-security-manager-iso27001
Command: npx skills add https://github.com/mwathiben/PropManager --skill information-security-manager-iso27001-mwathiben

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes scripts (resource) and references (resource) and assets (resource) components.

What problem does it solve?

Senior Information Security Manager capabilities delivered to implement ISO 27001/27002 compliant ISMS for HealthTech and MedTech firms, enabling structured risk management, policy development, and governance.

Core Features & Use Cases

  • ISMS design and implementation aligned with ISO 27001:2022 and ISO 27002:2022 for healthcare environments.
  • Security risk assessment, control selection, and ongoing monitoring to meet regulatory demands and certification readiness.
  • Healthcare-focused security governance covering policies, incident response, and compliance oversight with device and privacy considerations.

Quick Start

Initiate an ISO 27001 ISMS project for a HealthTech organization and draft a high-level implementation roadmap.

Frequently Asked Questions about information-security-manager-iso27001

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
What is ISO 27001 ISMS implementation for healthcare organizations?

ISO 27001 ISMS implementation for healthcare organizations involves designing a structured information security management system covering asset identification, risk analysis, control selection, and governance aligned with ISO 27001:2022 and ISO 27002:2022 standards. It establishes security controls for clinical data environments and medical device vendors.

How do I conduct a security risk assessment for HealthTech certification readiness?

Security risk assessment for HealthTech certification readiness requires identifying clinical data assets, analyzing threats, selecting appropriate ISO 27002 controls, and establishing ongoing monitoring. This structured risk management process satisfies ISO 27001:2022 compliance demands for medical device vendors and healthcare providers.

Can I use ISO 27002 security controls for medical device vendors and clinical data environments?

Yes, ISO 27002 security controls apply to medical device vendors and clinical data environments by providing a framework for control selection, deployment, and monitoring. This Skill addresses healthcare-focused security governance covering policies, incident response, and compliance oversight with device and privacy considerations.

How do I start an ISO 27001 ISMS project for a HealthTech organization?

Starting an ISO 27001 ISMS project for a HealthTech organization involves initiating a high-level implementation roadmap that covers asset identification, risk analysis, policy development, and control selection. This Skill drafts the roadmap aligned with ISO 27001:2022 and ISO 27002:2022 for certification readiness.

What's the best way to develop security policies and incident response for MedTech compliance?

Developing security policies and incident response for MedTech compliance requires healthcare-focused security governance aligned with ISO 27001:2022. This Skill provides structured policy development, incident management, and compliance oversight designed specifically for health technology organizations handling clinical data.

Does ISO 27001 ISMS cover audits and monitoring for healthcare providers?

Yes, ISO 27001 ISMS covers audits and monitoring for healthcare providers by satisfying ongoing monitoring, incident management, and governance requirements. This Skill implements security controls and compliance oversight aligned with ISO 27001:2022 and ISO 27002:2022 for clinical data environments.