ISO 27001 · Bedriften
0% 0 / 0 controls
Bedriften Consulting
Implementation Checklist

ISO/IEC 27001:2022 — SPIEL Platform

A working roadmap to certification, built on the principle of ISO 27001 Ready by Design — engineer security into SPIEL from the start rather than retrofitting it before an audit. Every item is mapped to its Annex A control and prioritised. Tick items as you complete them; progress is saved in this browser.

Standard: ISO/IEC 27001:2022 Annex A: 93 controls · 4 themes Scope: SPIEL lottery & payment platform Jurisdiction: Ghana — NLA · DPA 843 (2012) · Bank of Ghana
Critical foundational / security-critical High required for certification Medium maturity & hardening A.8.24 Annex A control reference
Start here. Clauses 4–10 are the management-system requirements auditors assess first — the ISMS itself. The 15 workstreams and SPIEL-specific controls below are largely the Annex A controls you select through your Risk Treatment Plan and record in the Statement of Applicability. You cannot certify on technical security alone: evidence and governance are graded equally.

Part A — Mandatory ISMS (Clauses 4–10)

Part B — The 15 Security Workstreams (Annex A controls)

Part C — SPIEL-Specific Controls (beyond ISO 27001)