A social organisation already had research, policy documents and an improvement basis from an earlier trajectory. Kynexis Information Security now supports the organisation in further securing, supplier management and practical advice questions.

The organisation

The organisation works with sensitive information about assistance, donors, employees, financial processes and cooperation partners. The daily service depends on Microsoft 365, specialized applications and multiple IT and software providers.

The starting point

The wide technical investigations, risk analysis and a significant part of the documentation had already been carried out before the involvement of Kynexis Information Security. The current question is how the organisation maintains existing improvements, continues to address suppliers and takes new risks with it in time.

How do we ensure that existing agreements and improvements continue to work in daily practice?

The role of Kynexis Information Security

Kynexis Information Security provides independent advice on information security questions and supports suppliers management components. In this process, agreements, responsibilities, progress and necessary evidence are made concrete.

  • advice on current security and continuity questions;
  • preparation and guidance of calls with suppliers;
  • assessment of agreements, reports and improvement actions;
  • monitor that ownership and follow-up remain visible;
  • translation of technical subjects into board-level choices.

Look ahead: Update risk analysis before 2027

The risk inventory and assessment previously carried out is scheduled to be reviewed and updated before the end of 2026 for 2027. We look at changed processes, systems, suppliers, threats and board-level priorities. This is a planned follow-up step and is not presented as a completed study.

What this support delivers

  • continuity in attention and decision-making;
  • clearer direction on IT and software providers;
  • a view on open actions and responsibilities;
  • a prepared starting point for the actualisation of the risk analysis;
  • independent interpretation when technology, contract and organisational risk come together.

Also secure information security further?

Kynexis Information Security can support with supplier management, periodic advice, risk analysis, re-examination and practical guidance in the execution.