ISO 27001 compliance software
ISO/IEC 27001 is the management system. SecBoard keeps the framework, the risk treatment, and the control evidence. The control text itself is the ISO/IEC 27002 catalog.
Framework, risk, and the control catalog
The ISO 27001 overview in the knowledge base tells the team to create an ISO 27001 framework, map controls, attach evidence, and track status, and to use risk assessment for treatment. The standards module is the catalog of ISO/IEC 27002 topics and controls, with translations and AI-powered search. SecBoard does not issue the certificate.
The rest of the management system
An ISMS also needs the asset registry, access requests, incident records, approved policies, training, and supplier reviews. Those are separate SecBoard modules. The open-source edition is the same product, self-hosted, if the team wants the system on its own server.