
Policy Owner: Dave YeatesEffective Date: Jan 8, 2025
Information Security Management System (ISMS) Policy

Purpose
This policy provides a framework to be applied when establishing, implementing, maintaining, andcontinually improving the information security management system ("ISMS"), as defi ned in 01-ISMS Scopeof the ISMS, in accordance with the requirements of the ISO/IEC 27001 ("ISO 27001") standard.
Leadership
Leadership and commitment
Atlas Platforms is committed to continually enhancing its ISMS. This commitment is demonstrated throughthe actions of the ISMS Governance Council, which oversees implementation, monitoring, andimprovements.
We ensure:
Information Security Policy
Atlas Platforms's information security policy:
Transparency and Awareness:
Roles, responsibilities and authorities
Roles and responsibilities for ISMS are based on Atlas Platforms' flat governance structure:
Competencies and gaps are assessed through regular reviews and training programs.
Planning
Atlas Platforms prioritizes the identifi cation of risks and opportunities, embedding iterative risk assessmentsinto agile workfl ows.
Risk Assessment:
Risk Treatment:
Security Objectives:
Action plans for achieving objectives are reviewed annually and tracked in Strateji
Support
Resources:
Atlas Platforms allocates funding, expertise, and tools to support ISMS operations.
Competence:
Roles impacting information security are evaluated based on training, experience, and education.Competence gaps are addressed through mentoring, external expertise, or training.
Awareness:
Personnel complete annual awareness training and understand their roles and consequences of non-compliance.
Communication:
Documentation Control:
Processes for creating, updating, and storing ISMS documentation are defined in the 05-ISMS DocumentControl Procedure.
Control of documented information
Processes for creating, updating, and storing ISMS documentation are defined in the 05-ISMS DocumentControl Procedure.
Operation
Atlas Platforms integrates information security into agile workflows:
Performance evaluation
Internal audit
Atlas Platforms performs internal audits of its ISMS on a recurring basis and has defined an ISMS InternalAudit Procedure. For further details, please refer to the 07-ISMS Procedure for Internal Audits document.
Management review
Atlas Platforms has defined an ISMS Management Review Procedure consisting of the necessary inputs andoutputs to ensure that the company's ISMS is operating effectively, as intended, and is continuallyimproving. For further details, please refer to the 08-ISMS Procedure for Management Review.
Improvement
Continual Improvement
Atlas Platforms is dedicated to perpetually enhancing the relevance, sufficiency, and efficiency of ourinformation security management system.
Nonconformity and corrective action
In case of any deviation from established standards, Atlas Platforms commits to:
For transparency and due diligence, Atlas Platforms will document:
Policy violation
All personnel, including employees, contractors, and third parties, must protect Atlas Platforms' data andsystems. Violations may result in corrective actions, including training, reassignment, or termination, in linewith severity and applicable laws.
ISO 27001 coverage
ISO 27001 4.1; 4.2; 4.3; 5.1
Version history
ISO 27001 4.1; 4.2; 4.3; 5.1
Version & Date
1.0
Aug 7, 2024
Author

Dave Yeates
Approver

Dave Yeates
27701 Privacy Information Management System (PIMS) Addendum
27701 Privacy Information Management System (PIMS) Addendum
This addendum is automatically applicable for organizations implementing ISO 27701 and optional fororganizations who are implementing ISO 27001 only.

Heading text
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Donec ullamcorper mattis lorem non. Ultrices praesent amet ipsum justo massa. Eu dolor aliquet risus gravida nunc at feugiat consequat purus. Non massa enim vitae duis mattis. Vel in ultricies vel fringilla.
Heading text
Heading text
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Donec ullamcorper mattis lorem non. Ultrices praesent amet ipsum justo massa. Eu dolor aliquet risus gravida nunc at feugiat consequat purus. Non massa enim vitae duis mattis. Vel in ultricies vel fringilla.
Heading text
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Donec ullamcorper mattis lorem non. Ultrices praesent amet ipsum justo massa. Eu dolor aliquet risus gravida nunc at feugiat consequat purus. Non massa enim vitae duis mattis. Vel in ultricies vel fringilla.
Heading text
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Donec ullamcorper mattis lorem non. Ultrices praesent amet ipsum justo massa. Eu dolor aliquet risus gravida nunc at feugiat consequat purus. Non massa enim vitae duis mattis. Vel in ultricies vel fringilla.
Heading text
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Donec ullamcorper mattis lorem non. Ultrices praesent amet ipsum justo massa. Eu dolor aliquet risus gravida nunc at feugiat consequat purus. Non massa enim vitae duis mattis. Vel in ultricies vel fringilla.
Heading text
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Donec ullamcorper mattis lorem non. Ultrices praesent amet ipsum justo massa. Eu dolor aliquet risus gravida nunc at feugiat consequat purus. Non massa enim vitae duis mattis. Vel in ultricies vel fringilla.
Heading text
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Donec ullamcorper mattis lorem non. Ultrices praesent amet ipsum justo massa. Eu dolor aliquet risus gravida nunc at feugiat consequat purus. Non massa enim vitae duis mattis. Vel in ultricies vel fringilla.
Heading text
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Donec ullamcorper mattis lorem non. Ultrices praesent amet ipsum justo massa. Eu dolor aliquet risus gravida nunc at feugiat consequat purus. Non massa enim vitae duis mattis. Vel in ultricies vel fringilla.
Heading text
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Donec ullamcorper mattis lorem non. Ultrices praesent amet ipsum justo massa. Eu dolor aliquet risus gravida nunc at feugiat consequat purus. Non massa enim vitae duis mattis. Vel in ultricies vel fringilla.
Heading text
Heading text
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Donec ullamcorper mattis lorem non. Ultrices praesent amet ipsum justo massa. Eu dolor aliquet risus gravida nunc at feugiat consequat purus. Non massa enim vitae duis mattis. Vel in ultricies vel fringilla.
Heading text
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Donec ullamcorper mattis lorem non. Ultrices praesent amet ipsum justo massa. Eu dolor aliquet risus gravida nunc at feugiat consequat purus. Non massa enim vitae duis mattis. Vel in ultricies vel fringilla.
Heading text
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Donec ullamcorper mattis lorem non. Ultrices praesent amet ipsum justo massa. Eu dolor aliquet risus gravida nunc at feugiat consequat purus. Non massa enim vitae duis mattis. Vel in ultricies vel fringilla.
Heading text
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Donec ullamcorper mattis lorem non. Ultrices praesent amet ipsum justo massa. Eu dolor aliquet risus gravida nunc at feugiat consequat purus. Non massa enim vitae duis mattis. Vel in ultricies vel fringilla.
Heading text
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Donec ullamcorper mattis lorem non. Ultrices praesent amet ipsum justo massa. Eu dolor aliquet risus gravida nunc at feugiat consequat purus. Non massa enim vitae duis mattis. Vel in ultricies vel fringilla.
Heading text
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Donec ullamcorper mattis lorem non. Ultrices praesent amet ipsum justo massa. Eu dolor aliquet risus gravida nunc at feugiat consequat purus. Non massa enim vitae duis mattis. Vel in ultricies vel fringilla.
Heading text
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Donec ullamcorper mattis lorem non. Ultrices praesent amet ipsum justo massa. Eu dolor aliquet risus gravida nunc at feugiat consequat purus. Non massa enim vitae duis mattis. Vel in ultricies vel fringilla.
Heading text
Heading text
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Donec ullamcorper mattis lorem non. Ultrices praesent amet ipsum justo massa. Eu dolor aliquet risus gravida nunc at feugiat consequat purus. Non massa enim vitae duis mattis. Vel in ultricies vel fringilla.
Heading text
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Donec ullamcorper mattis lorem non. Ultrices praesent amet ipsum justo massa. Eu dolor aliquet risus gravida nunc at feugiat consequat purus. Non massa enim vitae duis mattis. Vel in ultricies vel fringilla.
Heading text
Heading text
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Donec ullamcorper mattis lorem non. Ultrices praesent amet ipsum justo massa. Eu dolor aliquet risus gravida nunc at feugiat consequat purus. Non massa enim vitae duis mattis. Vel in ultricies vel fringilla.
Heading text
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Donec ullamcorper mattis lorem non. Ultrices praesent amet ipsum justo massa. Eu dolor aliquet risus gravida nunc at feugiat consequat purus. Non massa enim vitae duis mattis. Vel in ultricies vel fringilla.
Heading text
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Donec ullamcorper mattis lorem non. Ultrices praesent amet ipsum justo massa. Eu dolor aliquet risus gravida nunc at feugiat consequat purus. Non massa enim vitae duis mattis. Vel in ultricies vel fringilla.
Heading text
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Donec ullamcorper mattis lorem non. Ultrices praesent amet ipsum justo massa. Eu dolor aliquet risus gravida nunc at feugiat consequat purus. Non massa enim vitae duis mattis. Vel in ultricies vel fringilla.
Heading text
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Donec ullamcorper mattis lorem non. Ultrices praesent amet ipsum justo massa. Eu dolor aliquet risus gravida nunc at feugiat consequat purus. Non massa enim vitae duis mattis. Vel in ultricies vel fringilla.
Team members
100 users
Page 1 of 10
Heading text
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Donec ullamcorper mattis lorem non. Ultrices praesent amet ipsum justo massa. Eu dolor aliquet risus gravida nunc at feugiat consequat purus. Non massa enim vitae duis mattis. Vel in ultricies vel fringilla.
Strategy is where governance begins.
It’s the anchor point that keeps leadership connected, accountable and assured.
When intent becomes observable, governance becomes proactive.





Lead through complexity — with confidence.
Strateji brings structure, visibility and accountability to modern leadership. Let’s explore how it could work for you.
Book an Enterprise Briefing
Turn complexity into clarity.

Policy Owner: Dave YeatesEffective Date: Jan 8, 2025
Information Security Management System (ISMS) Policy

Purpose
This policy provides a framework to be applied when establishing, implementing, maintaining, andcontinually improving the information security management system ("ISMS"), as defi ned in 01-ISMS Scopeof the ISMS, in accordance with the requirements of the ISO/IEC 27001 ("ISO 27001") standard.
Leadership
Leadership and commitment
Atlas Platforms is committed to continually enhancing its ISMS. This commitment is demonstrated throughthe actions of the ISMS Governance Council, which oversees implementation, monitoring, andimprovements.
We ensure:
Information Security Policy
Atlas Platforms's information security policy:
Transparency and Awareness:
Roles, responsibilities and authorities
Roles and responsibilities for ISMS are based on Atlas Platforms' flat governance structure:
Competencies and gaps are assessed through regular reviews and training programs.
Planning
Atlas Platforms prioritizes the identifi cation of risks and opportunities, embedding iterative risk assessmentsinto agile workfl ows.
Risk Assessment:
Risk Treatment:
Security Objectives:
Action plans for achieving objectives are reviewed annually and tracked in Strateji
Support
Resources:
Atlas Platforms allocates funding, expertise, and tools to support ISMS operations.
Competence:
Roles impacting information security are evaluated based on training, experience, and education.Competence gaps are addressed through mentoring, external expertise, or training.
Awareness:
Personnel complete annual awareness training and understand their roles and consequences of non-compliance.
Communication:
Documentation Control:
Processes for creating, updating, and storing ISMS documentation are defined in the 05-ISMS DocumentControl Procedure.
Control of documented information
Processes for creating, updating, and storing ISMS documentation are defined in the 05-ISMS DocumentControl Procedure.
Operation
Atlas Platforms integrates information security into agile workflows:
Performance evaluation
Internal audit
Atlas Platforms performs internal audits of its ISMS on a recurring basis and has defined an ISMS InternalAudit Procedure. For further details, please refer to the 07-ISMS Procedure for Internal Audits document.
Management review
Atlas Platforms has defined an ISMS Management Review Procedure consisting of the necessary inputs andoutputs to ensure that the company's ISMS is operating effectively, as intended, and is continuallyimproving. For further details, please refer to the 08-ISMS Procedure for Management Review.
Improvement
Continual Improvement
Atlas Platforms is dedicated to perpetually enhancing the relevance, sufficiency, and efficiency of ourinformation security management system.
Nonconformity and corrective action
In case of any deviation from established standards, Atlas Platforms commits to:
For transparency and due diligence, Atlas Platforms will document:
Policy violation
All personnel, including employees, contractors, and third parties, must protect Atlas Platforms' data andsystems. Violations may result in corrective actions, including training, reassignment, or termination, in linewith severity and applicable laws.
ISO 27001 coverage
ISO 27001 4.1; 4.2; 4.3; 5.1
Version history
ISO 27001 4.1; 4.2; 4.3; 5.1
Version
1.0
Date
Jan 8, 2025
Description
Version 1.0
Author
Dave Yeates
Approver
Dave Yeates
27701 Privacy Information Management System (PIMS) Addendum
27701 Privacy Information Management System (PIMS) Addendum
This addendum is automatically applicable for organizations implementing ISO 27701 and optional fororganizations who are implementing ISO 27001 only.
Strategy is where governance begins.
It’s the anchor point that keeps leadership connected, accountable and assured.
When intent becomes observable, governance becomes proactive.




Lead through complexity — with confidence.
Strateji brings structure, visibility and accountability to modern leadership. Let’s explore how it could work for you.
Book an Enterprise Briefing
Turn complexity into clarity.

Policy Owner: Dave YeatesEffective Date: Jan 8, 2025
Information Security Management System (ISMS) Policy

Purpose
This policy provides a framework to be applied when establishing, implementing, maintaining, andcontinually improving the information security management system ("ISMS"), as defi ned in 01-ISMS Scopeof the ISMS, in accordance with the requirements of the ISO/IEC 27001 ("ISO 27001") standard.
Leadership
Leadership and commitment
Atlas Platforms is committed to continually enhancing its ISMS. This commitment is demonstrated throughthe actions of the ISMS Governance Council, which oversees implementation, monitoring, andimprovements.
We ensure:
Information Security Policy
Atlas Platforms's information security policy:
Transparency and Awareness:
Roles, responsibilities and authorities
Roles and responsibilities for ISMS are based on Atlas Platforms' flat governance structure:
Competencies and gaps are assessed through regular reviews and training programs.
Planning
Atlas Platforms prioritizes the identifi cation of risks and opportunities, embedding iterative risk assessmentsinto agile workfl ows.
Risk Assessment:
Risk Treatment:
Security Objectives:
Action plans for achieving objectives are reviewed annually and tracked in Strateji
Support
Resources:
Atlas Platforms allocates funding, expertise, and tools to support ISMS operations.
Competence:
Roles impacting information security are evaluated based on training, experience, and education.Competence gaps are addressed through mentoring, external expertise, or training.
Awareness:
Personnel complete annual awareness training and understand their roles and consequences of non-compliance.
Communication:
Documentation Control:
Processes for creating, updating, and storing ISMS documentation are defined in the 05-ISMS DocumentControl Procedure.
Control of documented information
Processes for creating, updating, and storing ISMS documentation are defined in the 05-ISMS DocumentControl Procedure.
Operation
Atlas Platforms integrates information security into agile workflows:
Performance evaluation
Internal audit
Atlas Platforms performs internal audits of its ISMS on a recurring basis and has defined an ISMS InternalAudit Procedure. For further details, please refer to the 07-ISMS Procedure for Internal Audits document.
Management review
Atlas Platforms has defined an ISMS Management Review Procedure consisting of the necessary inputs andoutputs to ensure that the company's ISMS is operating effectively, as intended, and is continuallyimproving. For further details, please refer to the 08-ISMS Procedure for Management Review.
Improvement
Continual Improvement
Atlas Platforms is dedicated to perpetually enhancing the relevance, sufficiency, and efficiency of ourinformation security management system.
Nonconformity and corrective action
In case of any deviation from established standards, Atlas Platforms commits to:
For transparency and due diligence, Atlas Platforms will document:
Policy violation
All personnel, including employees, contractors, and third parties, must protect Atlas Platforms' data andsystems. Violations may result in corrective actions, including training, reassignment, or termination, in linewith severity and applicable laws.
ISO 27001 coverage
ISO 27001 4.1; 4.2; 4.3; 5.1
Version history
ISO 27001 4.1; 4.2; 4.3; 5.1
Version
1.0
Date
Jan 8, 2025
Description
Version 1.0
Author
Dave Yeates
Approver
Dave Yeates
27701 Privacy Information Management System (PIMS) Addendum
27701 Privacy Information Management System (PIMS) Addendum
This addendum is automatically applicable for organizations implementing ISO 27701 and optional fororganizations who are implementing ISO 27001 only.
Strategy is where governance begins.
It’s the anchor point that keeps leadership connected, accountable and assured.
When intent becomes observable, governance becomes proactive.




Lead through complexity — with confidence.
Strateji brings structure, visibility and accountability to modern leadership. Let’s explore how it could work for you.
Book an Enterprise Briefing
Turn complexity into clarity.