Blog

Blog posts about compliance and ISO 27001

Abstract graphic for compliance training metrics blog post

Most compliance training metrics are probably wrong (OCEG 2025 survey)

Completion rates and quizzes look tidy, but they rarely prove risk reduction. Here is what the OCEG 2025 survey found and how SaaS companies can build ISO 27001-aligned training that actually changes behavior.

Jelle De Laender
2 January 2026 Read more
Abstract graphic for AI code vibing security

Security risks of AI Code Vibing

Why the speed and confidence of AI-generated changes can outrun security habits, and what guardrails to add before a prototype becomes production.

Jelle De Laender
27 December 2025 Read more
ISO 27001 transition deadline graphic

ISO 27001:2013 to ISO 27001:2022: the transition deadline has passed. What this means for SaaS

The transition window closed on 31 October 2025. Here is what SaaS organisations should do if they already transitioned, missed the deadline, or are still implementing.

Jelle De Laender
4 November 2025 Read more
Fluffy mammoth at a desk, symbolising accessibility work for EAA

Are you ready for the European accessibility act?

From 28 June 2025, the European Accessibility Act requires a wide range of products and services in the EU to be accessible to persons with disabilities, harmonising rules across member states and simplifying cross-border compliance. However, the recent Digital Trust Index shows over 90% of European homepages currently fail basic accessibility checks, underscoring the urgent need for organisations to audit existing offerings and begin remediation now. A proactive approach not only avoids legal risks but also expands market reach and enhances brand reputation.

Jelle De Laender
19 June 2025 Read more
Mammoths helping verifying backups

Why ISO 27001 Compliance Matters – And Why Backups & Recovery Testing Are Non-Negotiable

In today’s digital world, cybersecurity isn’t just an IT issue — it’s a business imperative. Customers, partners, and regulators expect companies to take security seriously, and few signals demonstrate that commitment better than ISO 27001 certification.

Jelle De Laender
30 March 2025 Read more