ExportableProof — Routines today. Proof tomorrow.

Process

Executive Risk Report

This report summarises the organisation’s information-security risk posture for Top Management. It highlights the most material risks, treatment status, residual risk above appetite, overdue actions, emerging threats and decisions required from leadership. It is an executive decision and oversight artefact, not an external-requirements register. This plan is the live Arcfield Platform programme in the surveillance cycle after certificate ARC-ISMS-2025-001.

Back to demo

OSCAL source · ERR

{
  "artifactId": "ERR",
  "iso": [
    "7.5"
  ],
  "catalog": [
    {
      "iso": "7.5",
      "oscalId": "iso27001-7.5",
      "title": "Documented information",
      "className": "iso27001-clause",
      "group": "Support"
    }
  ],
  "profileAlters": [
    {
      "control-id": "iso27001-7.5",
      "adds": [
        {
          "props": [
            {
              "name": "applicability",
              "value": "applicable"
            },
            {
              "name": "applicability-justification",
              "value": "ISO/IEC 27001:2022 management-system clause. Always in the certification scope; not subject to Annex A SoA exclusion."
            },
            {
              "name": "implementation-status",
              "value": "always-in-scope"
            }
          ]
        }
      ]
    }
  ],
  "components": [],
  "sspImplementedRequirements": []
}

Check installation

What is installed here. Extra volumes are optional and do not change Ready. Update re-runs the check.

CheckResult
Webserver…
Python…
Volumes…
Scripts…
Ready…
Working directory…
Last update…