Skip to content

Guides

The reference we wanted when we started.

Long-form guides on the standards and testing work we do. Written from running the engagements, with the clause references, the timelines, and the parts that go wrong. No gated PDFs.

How these are written

Our editorial standard.

Every guide is written by the consultants who deliver the work, and reviewed before publication by someone who has run the engagement type it describes. Each one carries a last-reviewed date, and we update them when a standard is revised rather than leaving stale clause numbers in place.

We cite clause and control references so you can check us against the source text. Where practice is contested between auditors or certification bodies, we say so instead of presenting one reading as settled. Where we hold a view that differs from common advice, we say that too, and give the reasoning.

What you will not find here: invented client anecdotes, statistics without a source, or a gated PDF. If a guide claims something specific about what an auditor does, it is because that is what we see them do.

None of this is legal advice, and we are not a law firm. Standards get revised. Check the current text before relying on any clause reference for a decision that matters.

Rather have someone walk you through it?

A scoping call costs nothing and we answer the awkward questions on it, including the ones where the honest answer is that you do not need us yet.

Book a scoping callsecurity@innsecs.com

No sales sequence. A scoping call and a written proposal cost nothing.