Policy and documents
One policy, one version. Approved once, valid for every standard.
Trustbird keeps your policy and procedures in one place, with a named owner, a version history and a clear approval. A document is linked to every requirement it covers, so your access policy is written once and serves ISO 27001 and NEN 7510 alike.
- Every version recorded with person and date
- One document linked to several standards
- Reminders before a review is due
Documents that stay current without extra effort
Policy is only useful when people know which version applies, who is responsible for it and when it was last looked at. Trustbird answers those questions for every document.
Version history
Every change produces a new version. You can see what changed, who changed it and which version was in force on any given date.
A named owner
Each document has one owner who is responsible for its content and its review. Ownership is visible to everyone who works in the system.
An approval that counts
A draft becomes valid only after the designated person approves it. The approval is recorded with name, date and version in the audit trail.
One document, several standards
Link a document to every requirement it covers, across standards. When you update it, every standard sees the same current version.
Review reminders
Set how often a document needs another look. The owner gets a reminder in time, and overdue documents stand out in the overview.
Statement of Applicability
The Statement of Applicability is generated from the controls you selected and the reasons you recorded. It stays in step with the rest of the system.
How it works
-
01
Start from what you have
Bring in your existing policy or start from a draft based on what you told Trustbird about your organization.
-
02
Assign an owner
Choose who is responsible for each document and how often it needs to be reviewed.
-
03
Review and approve
The owner reviews the draft and the designated person approves it. From that moment it is the version that applies.
-
04
Keep it current
Trustbird reminds the owner when a review is due and keeps every earlier version available for the auditor.
Frequently asked questions
- Can I use the policy documents I already have?
- Yes. You can bring in your own documents and link them to the requirements they cover. Trustbird does not require you to start over.
- Does Trustbird supply the text of the standards?
- No. The texts of ISO and NEN standards are protected by copyright. Trustbird uses its own wording, mapped to clause and control numbers, and your documents are written in your own words.
- Who can approve a document?
- You decide who approves which documents. Only an approval by that person makes a version valid, and the approval is recorded in the audit trail.
Related
- Risk management A risk register that stays current
- Controls and evidence Supply evidence once, use it everywhere
- Internal audit and management review Audits and reviews from your own data
- Supplier management Know who processes which data
- Trustbird AI An assistant that proposes, not decides
- Trust center Show customers how you work securely
See what Trustbird does for your organization
Trustbird is being built with two certified design partners, and we are looking for more companies to join them at co-founder pricing. Apply as a design partner, or mail us with a question.