
Closed
Posted
I need a comprehensive, written information security program aligned with ISO 27001. The program should include administrative, technical, and physical safeguards to protect customer data from unauthorized access, collection, use, copying, modification, disposal, or disclosure. Key requirements: - Administrative safeguards: - Access control policies - Regular security audits - Employee training programs Ideal skills and experience: - Expertise in ISO 27001 - Proven track record in developing information security programs - Strong understanding of customer data protection - Experience implementing access control policies and conducting security audits - Ability to design and deliver employee training programs on security protocols Please provide samples of similar work done and a timeline for completion.
Project ID: 39687283
27 proposals
Remote project
Active 9 mos ago
Set your budget and timeframe
Get paid for your work
Outline your proposal
It's free to sign up and bid on jobs
27 freelancers are bidding on average $38 USD/hour for this job

Hello, As an experienced team of engineers and developers with a diverse range of skills, we are well-equipped to handle your ISO 27001 Compliant Security Program. Our understanding of computer security and risk management is second to none, making us the ideal choice for ensuring your customer data is safe from unauthorized access, use, and disclosure. With prior knowledge in implementing access control policies, conducting security audits, and developing comprehensive information security programs aligned with ISO standards for a wide range of clients, we are primed to deliver nothing short of excellence. In addition to our expertise in ISO regulations, our proficiency in technical writing will allow us to create a thorough, well-articulated program that encompasses all your specific needs. We believe in clear communication - whether it's through the comprehensive documentation we provide or the transparent dialogue we maintain throughout the project. Finally, as you mentioned an employee training program as part of the project, our team can design and deliver impactful training programs concerning essential security protocols. This holistic approach allows for long-term safety measures that aren't just limited to policies and systems, but filtered down to individual employees. We have done similar work before and have always met or exceeded the expectations of our clients. Contact us today to discuss timelines and get started on Thanks!
$50 USD in 1479 days
6.4
6.4

Hello, I understand you're looking for a detailed information security program that complies with ISO 27001 standards. This program will cover key areas like administrative, technical, and physical safeguards to ensure that customer data is well protected from any unauthorized actions. My approach includes developing access control policies tailored to your needs, conducting regular security audits to assess vulnerabilities, and implementing comprehensive employee training programs that emphasize security awareness. Having worked on several projects similar to this, I can provide samples that demonstrate my expertise in crafting robust security frameworks. I am committed to delivering a well-structured program within an agreed timeframe that meets your expectations. Could you specify any particular areas within the ISO 27001 framework that you want to emphasize more in the security program? Thanks, Muhammad Awais
$25 USD in 20 days
5.9
5.9

Hi thanks for your time to read my proposal. I am a seasoned information security & privacy management consultant with 19 years of experience in documentation systems development, implementation, Internal Audits & certifications as per ISO27001, ISO27701 & GDPR. I have completed similar ISO27001 projects for a large number of companies preparing their complete information security cybersecurity documentation starting from ZERO. Please review my profile for completed projects. I am IRCA UK certified Lead Auditor in, ISO9001:2015, ISO 27001:2022, ISO 14001:2015, ISO 45001:2018 ISO 22000:2018 ISO 17025:2017 I will develop a comprehensive, written information security program aligned with ISO 27001. The program should include administrative, technical, and physical safeguards to protect customer data from unauthorized access, collection, use, copying, modification, disposal, or disclosure. Would you please respond so that we can discuss and move ahead.
$28 USD in 40 days
5.8
5.8

As an experienced security consultant, my focus has always been on protecting businesses like yours from cyber threats and ensuring compliance with international standards. Over the last 7+ years, I’ve dedicated myself to developing robust information security programs aligned with ISO 27001, SOC 2, GDPR, NIST standards, among others. I have a deep understanding of the importance of administrative safeguards like access control policies and regular security audits in keeping customer data safe. More importantly, my skills extend far beyond just writing security protocols; I am well-versed in their implementation and training personnel through these policies. In fact, I’ve designed and delivered countless employee training programs on security protocols that have raised awareness and strengthened the internal defense mechanisms for previous clients. Furthermore, my proficiency with tools such as Invicti, Nessus, Qualys for risk assessment will enable me to quickly identify any potential threats and vulnerabilities in your system. Lastly, my dedication to client satisfaction is reflected in both my perfect 5-star rating and my savings of over $200K for clients through risk mitigation. With me on board as your ISO 27001 expert and lead auditor, you can expect nothing short of comprehensive, effective protection for your customer data while adhering strictly to regulations! So let's join forces and fortify your business together!
$45 USD in 40 days
5.5
5.5

Hello, You want the entire program in written format or what? Deliverable would be in file like word or pdf, right? I am immensely experienced and knowledgeable with ISO 27001. So, I can deliver you a comprehensive, written information security program aligned with ISO 27001 included administrative, technical, and physical safeguards. Within 4-5 days duration I will complete the project. Kind Regards, Subhasis
$30 USD in 20 days
5.7
5.7

As an expert in developing information security programs aligned with ISO 27001, I understand the importance of safeguarding customer data from unauthorized access and ensuring compliance with industry standards. Your project seeking a comprehensive security program with administrative, technical, and physical safeguards is crucial in today's data-driven world. With over 10 years of experience in web and mobile development, I have successfully implemented access control policies, conducted regular security audits, and designed employee training programs on security protocols for various projects. My expertise in ISO 27001 combined with a proven track record in developing information security programs positions me as the ideal candidate to tackle your requirements. Having worked extensively in the FinTech and eCommerce sectors, I have a deep understanding of customer data protection and the need for robust security measures. I am confident in delivering a tailored solution that meets your needs effectively and efficiently. I am eager to discuss your project further and provide samples of similar work along with a timeline for completion. Feel free to reach out to me to get started on enhancing your security program to meet ISO 27001 compliance standards.
$40 USD in 15 days
4.6
4.6

Hello Mastorah, I am excited about the opportunity to develop a comprehensive information security program aligned with ISO 27001 for your organization. With my expertise in ISO 27001 and a proven track record of creating robust information security frameworks, I am confident in my ability to meet your requirements. Incorporating critical administrative safeguards like access control policies, regular security audits, and employee training programs will be at the forefront of this project. I possess deep knowledge in customer data protection and have successfully implemented security measures that ensure the confidentiality and integrity of sensitive information. I will provide samples of similar work upon request. As for the timeline, I estimate a completion period of 4 to 6 weeks to ensure every aspect is meticulously crafted and aligned with best practices. Thanks, Margaret
$30 USD in 20 days
4.1
4.1

Cover letter: ========= I previously served as the Data Protection Officer at HSBC Bank, bringing 21 years of experience in information security and data privacy across industries including SaaS, banking, healthcare, pharmaceuticals, retail, and transport & logistics. I can provide references from HSBC Bank and other clients from my past consulting engagements, on demand. Proposal for Development of a Comprehensive Information Security Program Aligned with ISO 27001 & Saudi PDPL ======================================================================================== Project Objectives: Develop and implement an ISO 27001:2022-aligned ISMS tailored to your business context. Integrate Saudi PDPL compliance requirements into all policies and controls. Scope of Work: Administrative Safeguards Technical Safeguards Physical Safeguards Policy Development: --Information Security Policy. --Data Retention & Disposal Policy (PDPL-compliant). --Incident Response & Breach Notification Policy (aligned with CITC/NCA guidance). --Employee Awareness & Training --Role-specific security awareness sessions. --Annual refresher training programs. My methodology ensures that the ISMS not only meets ISO 27001 requirements but also complies with: --Saudi PDPL --NCA-ECC Past Experience & References 1. HSBC Bank ( The largest foreign bank in India) (Dmitri Hubbard) 2. Aimpoint Digital LLC (INC. 5000 company in the USA) (William Miller) 3. HUMA Therapeutics (London) (Paresh Masani)
$30 USD in 20 days
3.6
3.6

I am working in the banking field with more than 25 work experiences, I worked as an IT Risk Manager and cyber security consultant in different organizations. I achieved lot of certificates (CISSP , CISA, CEH, eccpt, IBM analyst I2, SANS 504, SANS 503, Mandiant (Fireeye)), educational experiences, and hands-on experiences.
$45 USD in 40 days
3.0
3.0

Dear Mastorah A., We carefully studied the description of your project and we can confirm that we understand your needs and are also interested in your project. Our team has the necessary resources to start your project as soon as possible and complete it in a very short time. We are 25 years in this business and our technical specialists have strong experience in Web Security, Computer Security, Technical Writing, Compliance, Risk Management, Internet Security, Employee Training, Data Protection and other technologies relevant to your project. Please, review our profile https://www.freelancer.com/u/tangramua where you can find detailed information about our company, our portfolio, and the client's recent reviews. Please contact us via Freelancer Chat to discuss your project in details. Best regards, Sales department Tangram Canada Inc.
$35 USD in 5 days
3.3
3.3

I can deliver a comprehensive written Information Security Program fully aligned with ISO 27001, integrating administrative, technical, and physical safeguards to protect customer data from unauthorized access, collection, use, or disclosure. Why me: ISO 27001 Expertise: Certified Lead Auditor & Implementer, with experience designing and implementing ISMS for organizations in regulated sectors. Proven Track Record: Developed access control policies, audit procedures, and employee training for clients under ISO 27001, PCI DSS, HIPAA, and NIST CSF. Comprehensive Approach: Administrative Safeguards: Policies, risk assessment, access control, incident response. Technical Safeguards: Secure configurations, encryption, monitoring. Physical Safeguards: Facility access controls, secure media handling. Training Programs: Tailored security awareness sessions and materials for all staff levels. Audit Readiness: Incorporation of regular security audit processes to ensure continuous compliance. Timeline: Draft in 2 weeks, final delivery within 4 weeks. Samples of similar work can be shared upon request.
$25 USD in 40 days
2.5
2.5

Hi, I am an Associate CISSP with a strong track record in ISO 27001 implementation and developing enterprise-level information security programs. My background includes: – Successfully led ISO 27001 certification projects, aligning policies, procedures, and controls with the standard’s requirements. – Designed safeguards to prevent unauthorized access, use, or disclosure, incorporating encryption, secure configurations, and physical security measures. -- Developed role-based access control policies and implemented recurring internal audit frameworks. – Created and delivered security awareness programs, ensuring organization-wide compliance and engagement. For your project, I will deliver a comprehensive written security program including administrative, technical, and physical safeguards, fully aligned with ISO 27001:2022. The deliverables will cover access control policies, security audit processes, and employee training materials. I will ensure the program is compliant, actionable, and tailored to your operational environment within 8 weeks. Samples of similar work can be provided upon request. Best regards, Muhammad Hammad
$27 USD in 15 days
2.4
2.4

Hello Mastorah, I’m excited about the opportunity to develop a comprehensive information security program aligned with ISO 27001 for your organization. With my expertise in ISO 27001 and experience in crafting robust information security frameworks, I am confident in delivering a program that ensures administrative, technical, and physical safeguards to protect customer data effectively. I will create access control policies tailored to your specific needs, conduct regular security audits, and design effective employee training programs to raise awareness about security protocols within your team. My previous work includes developing similar programs for organizations, and I can provide samples upon request to illustrate my capabilities. In terms of timeline, I estimate that this project could be completed within weeks, ensuring we adhere to all necessary compliance guidelines. Thanks, ALESSIO
$50 USD in 35 days
1.0
1.0

I can develop a comprehensive Information Security Program fully aligned with ISO 27001 standards, covering administrative, technical, and physical safeguards to ensure robust customer data protection. The deliverable will include: Administrative Safeguards: Access control policies, governance framework, incident response procedures, and scheduled security audits. Technical Safeguards: Data encryption, secure authentication, monitoring systems, and vulnerability management. Physical Safeguards: Facility access controls, device security measures, and secure data disposal procedures. Employee Training: Custom training modules and awareness programs to ensure adherence to security protocols. I have successfully designed ISO 27001–aligned programs for organizations in regulated sectors, with a strong focus on risk assessment, compliance, and practical implementation. I can share anonymized samples of previous work and deliver the full program with supporting documentation within the agreed timeline.
$50 USD in 40 days
0.0
0.0

If you don't like it, you don't pay and walk away with a free consultation. I am a perfect fit for your project, aligning with ISO 27001 security standards. I have expertise in ISO 27001 and a proven track record in developing comprehensive security programs. While I am new to Freelancer, I have tons of experience and have completed similar projects offsite. I would love to chat more about your project! The worst that can happen is you walk away with a free consultation. Regards, L.J. Momsen
$50 USD in 14 days
0.0
0.0

As a Full-Stack Developer, my competence extends beyond merely coding and into the realms of information security. In addition to extensive knowledge and direct experience with ISO 27001, I have proven skills in developing comprehensive information security programs - a key requirement for this project. My intimate understanding of customer data protection, along with my ability to implement access control policies and conduct regular security audits, aligns perfectly with your demands. I offer further value with my capacity to design and deliver effective employee training programs on security protocols. Given the nature of an ISO-27001 compliant system, employees must be well-versed in the various administrative, technical, and physical safeguards in place - a task I've executed successfully before. Moreover, my habit of following agile practices ensures that I'll provide you with tasks' status updates regularly and meet every deadline stipulated in the project. Lastly, let me share that beyond my technical abilities lies my commitment to continuous learning and user satisfaction. I always prioritize application stability, performance, and user experience regardless of whether I'm building something from scratch or improving an existing system. When you choose me for this project, you are not just getting skillfulness but also dedication; a freelancer who will not only complements your needs but pushes your work forward in a meaningful way.
$25 USD in 40 days
0.0
0.0

I am a cybercrime investigator with a Master’s in Law and a PhD focus on technology and cybercrime, combining deep cybersecurity expertise with legal and compliance knowledge. I have practical experience developing ISO 27001-aligned security programs that integrate administrative, technical, and physical safeguards. My work in threat intelligence, digital forensics, and cyber investigations gives me real-world insight into data protection challenges, allowing me to design access control policies, conduct security audits, and deliver employee security training that’s both compliant and effective. I have implemented frameworks for organizations handling sensitive data, ensuring compliance with international standards while reducing operational risks. With this unique mix of legal, technical, and investigative skills, I can deliver a robust program that protects customer data from unauthorized access, use, or disclosure.
$38 USD in 100 days
0.0
0.0

I am ISo 27001:2022 lead audit and expert delivering robust info security programs, policies, audits & staff training."
$25 USD in 40 days
0.0
0.0

Hi, Nice to meet you! I beleive that i can help you to get your target, please send me a reply for our connect
$50 USD in 40 days
0.0
0.0

Hello, I’d love to help build your ISO 27001-aligned security program—covering administrative, technical, and physical safeguards, from access control policies to training plans. Quick example from my work: At a mid-sized fintech, they needed to formalize their ISMS for ISO 27001 readiness. I scoped the ISMS (context, stakeholders, boundaries), ran risk assessments, drafted access and audit policies, and rolled out staff training. Six weeks later, they passed internal audit stage one with zero non-conformities—and the team’s security awareness scores increased by 40%. I bring hands-on ISO 27001 ISMS development, strong documentation chops, and real success getting teams ready for audits. Happy to share sample documents or a timeline for delivery. Let me know how you’d like to move forward! Best, Pete Green, CISSP, CISA, CCSK, CEH, ITILv3, C|CISO (WIP), MSCIS InfoSec
$50 USD in 40 days
0.0
0.0

Jeddah, Saudi Arabia
Member since Jul 6, 2025
₹12500-37500 INR
$25-50 USD / hour
$15-25 USD / hour
$200-300 SGD
₹1250-2500 INR / hour
$2-8 CAD / hour
₹600-1500 INR
$250-750 USD
₹12500-37500 INR
₹250000-500000 INR
₹12500-37500 INR
₹12500-37500 INR
€12-18 EUR / hour
₹1500-12500 INR
$25-50 USD / hour
$250-750 USD
₹1500-12500 INR
$30-250 USD
₹1500-12500 INR
$3000-5000 NZD