{"id":101938,"date":"2025-08-05T11:21:51","date_gmt":"2025-08-05T09:21:51","guid":{"rendered":"https:\/\/eiposgrados.com\/?p=101938"},"modified":"2025-08-26T10:06:15","modified_gmt":"2025-08-26T08:06:15","slug":"ia-in-iso-iec-audits","status":"publish","type":"post","link":"https:\/\/eiposgrados.com\/eng\/blog-dpo\/ia-en-auditorias-iso-iec\/","title":{"rendered":"AI in audits as a companion on your path to certification\u00a0"},"content":{"rendered":"<p>Preparing for a security audit\u2014whether ISO\/IEC 27001, ISO\/IEC 22301, ENS, or NIS2\u2014requires a significant amount of documentation and organizational work. Quality, IT, and CISO teams know this well.<\/p>\n\n\n\n<p><br>This is where artificial intelligence (AI) in audits can become your ally. It doesn&#039;t replace human resources, but it can <strong>streamline preparation, verification and documentation<\/strong> in increasingly complex environments.<\/p>\n\n\n\n<h2 class=\"gb-headline gb-headline-13f16259 gb-headline-text\"><strong><strong>How can AI help you?<\/strong><\/strong><\/h2>\n\n\n<div class=\"gb-container gb-container-553c8f7c\">\n\n<h4 class=\"wp-block-heading\"><strong>1. <strong><strong>Automatic evidence organization<\/strong><\/strong><\/strong><\/h4>\n\n<\/div>\n\n\n<p>AI can scan entire folders of documents (policies, minutes, logs, etc.) and <strong>label them according to regulatory controls<\/strong> (ISO, ENS, NIS2\u2026). This improves traceability and facilitates the auditor&#039;s work.<\/p>\n\n\n\n<h4 class=\"wp-block-heading\"><strong>2. <strong>Preliminary compliance matrices<\/strong><\/strong><\/h4>\n\n\n\n<p>From the uploaded documents, some tools automatically generate <strong>compliance matrices<\/strong> that help detect gaps or redundancies before internal review.<\/p>\n\n\n\n<h4 class=\"wp-block-heading\"><strong>3. <strong>Summaries and consolidation of evidence<\/strong>\u00a0<\/strong><\/h4>\n\n\n\n<p>Writing policy briefs or reports can be tedious. AI helps generate <strong>clear and homogeneous summaries<\/strong>, speeding up the preparation of deliverables.<\/p>\n\n\n\n<h4 class=\"wp-block-heading\"><strong>4. <strong>Start from a base for new documents<\/strong><\/strong><\/h4>\n\n\n\n<p>When a policy needs to be created from scratch, AI can <strong>provide a first draft<\/strong> which is then adapted to the reality of the organization.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>Examples by standard<\/strong><\/h2>\n\n\n\n<h4 class=\"wp-block-heading\">\u2013 <strong><strong><strong>ISO 27001<\/strong><\/strong><\/strong><\/h4>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Classification of evidence by Annex A controls<\/li>\n\n\n\n<li>Support in drafting the SoA<\/li>\n\n\n\n<li>Automatic policy review<\/li>\n<\/ul>\n\n\n\n<h2 class=\"gb-headline gb-headline-22208a94 gb-headline-text\"><strong><strong>-ENS<\/strong><\/strong><\/h2>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Classification of assets by dimensions CITAD<\/li>\n\n\n\n<li>Detection of essential vs. reinforced controls<\/li>\n\n\n\n<li>Generation of an initial adaptation plan<\/li>\n<\/ul>\n\n\n\n<h2 class=\"gb-headline gb-headline-76ee01ca gb-headline-text\"><strong><strong>-NIS2<\/strong><\/strong><\/h2>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Sectoral compliance review<\/li>\n\n\n\n<li>Extraction of findings from internal audits<\/li>\n\n\n\n<li>Support in regulatory reports<\/li>\n<\/ul>\n\n\n\n<h2 class=\"gb-headline gb-headline-74f8fbb8 gb-headline-text\"><strong><strong>-ISO 22301<\/strong><\/strong><\/h2>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Verification between BIA, risks and plans<\/li>\n\n\n\n<li>Generating evidence for simulations<\/li>\n\n\n\n<li>Analysis of the degree of maturity of the system<\/li>\n<\/ul>\n\n\n\n<h4 class=\"wp-block-heading\"><strong><strong>At EIP we help you lead<\/strong><\/strong><\/h4>\n\n\n\n<p>AI <strong>does not replace expert judgment<\/strong>, but it can save time and improve document quality. Some good practices:<\/p>\n\n\n\n<p>Not relying on AI for <strong>interpret regulations<\/strong><\/p>\n\n\n\n<p>Always <strong>validate the generated documents<\/strong><\/p>\n\n\n\n<p>Use tools that respect the <strong>confidentiality<\/strong><\/p>\n\n\n\n<p><\/p>","protected":false},"excerpt":{"rendered":"<p>Preparing for a security audit\u2014whether ISO\/IEC 27001, ISO\/IEC 22301, ENS, or NIS2\u2014requires a significant amount of documentation and organizational work. The\u2026 <a title=\"AI in audits as a companion on your path to certification\u00a0\" class=\"read-more\" href=\"https:\/\/eiposgrados.com\/eng\/blog-dpo\/ia-en-auditorias-iso-iec\/\" aria-label=\"Read more about AI in audits as a companion on your path to certification\u00a0\">Read more<\/a><\/p>","protected":false},"author":4204,"featured_media":101939,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":""},"categories":[330,368,367],"tags":[],"class_list":["post-101938","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-blog-dpo","category-compliance","category-proteccion-de-datos"],"acf":[],"_links":{"self":[{"href":"https:\/\/eiposgrados.com\/eng\/wp-json\/wp\/v2\/posts\/101938","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/eiposgrados.com\/eng\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/eiposgrados.com\/eng\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/eiposgrados.com\/eng\/wp-json\/wp\/v2\/users\/4204"}],"replies":[{"embeddable":true,"href":"https:\/\/eiposgrados.com\/eng\/wp-json\/wp\/v2\/comments?post=101938"}],"version-history":[{"count":0,"href":"https:\/\/eiposgrados.com\/eng\/wp-json\/wp\/v2\/posts\/101938\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/eiposgrados.com\/eng\/wp-json\/wp\/v2\/media\/101939"}],"wp:attachment":[{"href":"https:\/\/eiposgrados.com\/eng\/wp-json\/wp\/v2\/media?parent=101938"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/eiposgrados.com\/eng\/wp-json\/wp\/v2\/categories?post=101938"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/eiposgrados.com\/eng\/wp-json\/wp\/v2\/tags?post=101938"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}