information-security-manager-iso27001

Automate ISO 27001 ISMS risk assessment and control mapping for HealthTech organizations.

Updated Dec 23, 2024
One-click install
npx skills add https://github.com/salamientark/dotfiles --skill information-security-manager-iso27001-salamientark
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: information-security-manager-iso27001
Source: https://github.com/salamientark/dotfiles/tree/main/claude/skills/ra-qm-team/information-security-manager-iso27001
Command: npx skills add https://github.com/salamientark/dotfiles --skill information-security-manager-iso27001-salamientark

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes scripts (resource) and references (resource) components.

What problem does it solve?

This skill helps HealthTech and MedTech organizations design, implement, and govern ISO 27001:2022 ISMS, enabling structured governance, risk assessment, and certification readiness.

Core Features & Use Cases

  • ISMS design and governance: define scope, policies, controls, and responsibilities aligned with ISO 27001:2022.
  • Risk assessment & treatment: generate risk registers, assess threats, map controls, and propose mitigations.
  • Compliance validation: support SoA development, evidence collection, and audit readiness.

Quick Start

Initiate an ISO 27001 risk assessment for the patient-data-system scope and generate a gap analysis report.

Frequently Asked Questions about information-security-manager-iso27001

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I prepare an ISO 27001 risk assessment for a healthcare technology environment?

An ISO 27001 Statement of Applicability (SoA) documents your selected Annex A controls and their implementation status. This skill supports SoA development by aligning risk treatment outcomes with control mapping for audit readiness.

Can I use this for ISO 27001 audit readiness and evidence collection in MedTech?

Yes, this skill supports ISO 27001 audit readiness in MedTech by automating evidence collection and validation workflows. It generates auditor-facing reports that document policy management and control implementation for certification.

What is the best way to map ISO 27001 Annex A controls for HealthTech compliance?

The best way to map ISO 27001 Annex A controls for HealthTech compliance is to align risk treatments directly with control objectives. This skill automates control mapping, generates gap analysis reports, and tracks implementation status.

Does this skill handle ISO 27001 ISMS scope definition for patient-data-systems?

Yes, this skill handles ISO 27001 ISMS scope definition for patient-data-systems by establishing boundaries, policies, and responsibilities. It structures governance frameworks specifically tailored for HealthTech and MedTech organizations.

How do I generate a gap analysis report for ISO 27001 certification readiness?

Generating a gap analysis report for ISO 27001 certification readiness involves evaluating current ISMS controls against the 2022 standard requirements. This skill automates gap analysis, assesses risk treatment, and outputs auditor-facing reports.