Service datasheet
compliance packs and audit readiness
The IT and security half of your compliance: policies, procedures, SOPs and the evidence an assessor asks IT for, generated around your actual estate rather than bought as templates.
Who this is for
- Compliance has landed on IT and you are the one who has to evidence access reviews, patching and backups
- You need the IT and security documents for Cyber Essentials, ISO 27001, SOC 2, the DSP Toolkit or a client's security questionnaire
- You have bought template packs before and found they still needed days of rewriting to describe your estate
- You want to run internal audits and close gaps yourself, before an assessor or a customer does it for you
What is included
- IT and security policies, procedures and SOPs written around your estate, not bought as templates
- Compliance packs mapped to your framework: Cyber Essentials, ISO 27001, SOC 2, DSP Toolkit and more
- Internal audits and self-assessments you can run yourself, on demand
- Gap analysis with a prioritised, plain-English list of what to fix first
- Audit-ready evidence packs for assessors and customer security questionnaires
- Living documents that stay current as your systems and controls change
- A clear split of what IT owns and what the wider business owns, agreed up front
- Delivered with EtherAssist and backed by our security team's hands-on remediation
What we would do
If a customer, insurer or tender has asked for evidence and you are assembling it retrospectively, start with the artefacts rather than the policies. The recurring failure is not missing documents, it is documents nobody can evidence being followed.
- If you are pursuing ISO 27001 specifically, the Statement of Applicability comes early and shapes everything after it, so scope that before writing anything.
- If the deadline is short and the requirement is Cyber Essentials rather than a full framework, do the certification alone and leave the wider pack for later.
When we are not the answer
If you want a set of policy documents to file and never look at again, buy a template pack from anyone. It will be cheaper than us and equally effective at that job. We are only worth paying for if you intend the controls to be real. We are also not your whole compliance function: we cover the IT and security estate, and the HR, finance and health and safety side stays with the business, which is a division worth agreeing at the start rather than discovering at the audit.
What it costs
Scoped and quoted against your estate rather than sold from a rate card. We price what you already run, including the parts that are working and do not need replacing, and the quote itemises what is included so it can be compared line by line with anyone else’s. Managed IT support starts at £40 per user, per month if that is the wider question.
The next step, if you want one
Cyber Essentials readiness check. 45 minutes, plus a written gap list within three working days. You keep the written findings whether or not you engage us, and there is no sales call before it.
https://systechitsolutions.co.uk/book/cyber-essentials
Not ready for that? The full service page is at https://systechitsolutions.co.uk/services/compliance-packs, or call the number at the top of this sheet.
We will email it over
Useful if you are taking it into a meeting or attaching it to something. Name and email, that is all. One email, the datasheet, and nothing else unless you ask.
Want to keep a copy? Ask for the PDF above and you can save or print it from here too.
← Full detail on compliance packs and audit readiness