Request a walkthrough
Beta

CertEdge is still under development and is open by invitation to a small number of selected organisations. SecureEdge Group will announce the full release soon.

Roadmap

What is built, and what is next.

Stated plainly, so nothing on this site has to be taken on trust. If something you need is on the right-hand list, ask us where it stands.

In CertEdge today
  • The ISO 27001:2022 cycle, from scope and Statement of Applicability to the certification decision
  • AEGIS grading requirement by requirement, with people accepting, four eyes
  • The auditor's workspace, findings to verified closure, and an independent decision
  • A hash-chained audit log and SHA-256 sealed evidence packs
  • The next period opened from the last, with scope and history carried forward
Next
  • Connectors for Microsoft 365, Google Workspace, AWS and Azure (evidence is uploaded today)
  • Policy templates and a risk register
  • Internal audit and management review
  • Export of the Statement of Applicability and the evidence pack
  • Evidence expiry alerts and reminders
  • An advisor seat in the workspace

Frameworks on the roadmap: SOC 2 in depth, then ISO 22301, NIST CSF 2.0, India's DPDP Act, CERT-In directions and SEBI CSCRF.

Questions

Certification questions

The questions teams ask before they start, answered the same way as the rest of this site.

How long does ISO 27001 certification take?

It depends on your scope and on how much is already in place. SecureEdge Advisory plans an ISO 27001 Readiness Sprint at 12 to 16 weeks to reach audit readiness. The certification body's audits then follow on their own timetable, and your scope decides the real figure.

Can we use CertEdge today?

CertEdge is in beta. It is still under development and is open by invitation to a small number of selected organisations. Request a walkthrough and we will tell you where it stands for your scope. SecureEdge Group will announce the full release on this site.

Does CertEdge certify us?

No. An accredited certification body audits you and issues the certificate. CertEdge prepares the evidence, gives your auditor a place to work, and records the outcome. It never issues a certificate, and no platform honestly can.

What does our auditor see?

Only the evidence versions your team has published. Questions are asked on the evidence request itself, and an open question stops the auditor concluding on that request until it is answered.

What does AEGIS do with our documents?

AEGIS reads the text of each evidence document and grades it against the requirements it has to answer. To do that it sends the extracted text, not the file, to a third-party AI model provider. People still decide: AEGIS never accepts evidence on its own.

Can CertEdge collect evidence from our systems automatically?

Not yet. Evidence is uploaded today. Connectors for Microsoft 365, Google Workspace, AWS and Azure are on the roadmap, and we would rather say so here than let a demo imply otherwise.

What happens after certification?

The next period opens from the closed one, with your scope and Statement of Applicability carried forward and your earlier sealed evidence packs still verifiable. CertEdge records your certificate's standing and the first surveillance date.

Are the certification body's fees included?

No. The certification body's audit fees are separate, and you pay the body directly. That keeps the auditor independent of us.

What does CertEdge cost?

It is scoped to your organisation: the frameworks in play, the size of the scope, and whether a Readiness Sprint comes with it. Tell us what you need and we will reply with a proposal in writing.

See CertEdge on your own scope

Write to us with what your customers are asking for, and a person replies to arrange a walkthrough. No card form. Want someone to run the programme with you? SecureEdge Advisory runs ISO 27001 Readiness Sprints alongside it.

Request a walkthrough → cio@secureedgeadvisory.com