ABOUT 27KAYISO 27001 & SOC 2, built to last beyond audit
27kay assists SaaS companies in developing, certifying, and managing scalable information security programs. We encompass the entire compliance lifecycle, including scoping, gap analysis, implementation of an Information Security Management System (ISMS), internal audits, certification assistance, and continuous virtual CISO (vCISO) services. Our key service offerings consist of: - ISO/IEC 27001:2022 certification and ongoing support - SOC 2 Type I and Type II readiness and audit assistance - vCISO engagements tailored to your stage and budget - Internal audits, risk assessments, and development of Statements of Applicability Our team has more than 22 years of real-world experience in information security across telecom, cloud SaaS, and regulated sectors, actively participating in ISMS operations in addition to our consulting services. We usually collaborate with two client categories: founders and security leaders getting ready for their first ISO 27001 or SOC 2 certification, often to secure enterprise contracts; and established security teams aiming to ensure their ISMS delivers ongoing value year after year. Engagements are customized based on your current stage, tools, and audit timelines. We are based in Estonia (27kay OÜ) and offer services throughout the EU and internationally.
Languages Spoken
EnglishGreek