Back

Bayard GmbH

Bayard GmbH is part of the Markant Group and supports customers from retail and industry in the area of digital commerce. With many years of experience in product content management consulting, comprehensive expertise in implementing PIM solutions and proprietary BYRD technology, Bayard's experts are the right partners for digital transformation.

Industry
IT / Tech
Consulting
Location
Cologne, North Rhine-Westphalia
Employees
50 to 100
Compliance frameworks
ISO 27001, GDPR
Athereon GRC modules
ISMS, DSM
Share success story
Do you want your company's success story to be next?
Get demo

Ergebnis im Überblick

Challenge

Intended initial certification

Bayard's primary concern was the introduction of an ISMS in accordance with ISO 27001, which passes certification. It should have a modern control system for ISMS-relevant objects with digital workflows and guide those responsible through the relevant requirements and chapters of the ISO 27001 standard to ensure easy derivation of security processes.

In addition, it was necessary to maintain and monitor a processing register in accordance with the GDPR for all relevant processes.

Solution

Setting up an ISMS with data protection module

Athereon GRC made it easy to set up a new ISMS. With the ISO 27001 Wizard from Athereon GRC, it is now possible to process the relevant controls in sequence at any time.

The additional data protection module provides access to central data objects and E2E management of the data protection process.

Result

Certification and operationalization of measures

The information security officer was able to go through the requirements in a clear cockpit and thus effectively derive the appropriate evidence and security processes. The derived TOMs to protect the data are in turn synchronized and monitored centrally with the ISMS measures.

The company has achieved external certification in accordance with ISO 27001 and is now using Athereon GRC to operationalize the measures over the long term.

"For Bayard, we made exactly the right decision by choosing Athereon GRC for our initial certification. The cockpit is particularly user-friendly; you always have a complete overview of all ISO requirements and processes and know exactly where you are. The software itself always covers the latest regulatory requirements, so you are perfectly prepared for audits. The support from the team was also always reliable, competent, and unbureaucratic. We particularly appreciated the personal support and the straightforward, solution-oriented approach for our company."

Inga Kramer
Lead HR & Projects

Would you like to learn more?

Book a noncommittal demo appointment with our team to analyze your individual use case with us.

Leading Organizations Rely on Us

a woman shaking hands with another woman

Do career in compliance

Vereinbaren Sie einen unverbindlichen Demo-Termin mit unserem Team, um gemeinsam Ihren individuellen Anwendungsfall zu analysieren.