EPISODE · Jun 18, 2026 · 49 MIN
What ISO 27001 Recertification Actually Looks Like
from CYBERCAST
If anyone should breeze through an ISO 27001 audit, it's a cybersecurity company — right? In this episode of the NeverHack Cybercast, host Louis Zezeran sits down with Andres Järv, vCISO at NeverHack Estonia, fresh from the firm's own recertification, for an honest look at what the standard really demands.Andres breaks down what ISO 27001 actually is, the three-year audit cycle, what auditors look for (and how they catch you out), and why your documentation has to match reality. Then he unpacks the virtual CISO model: why even profitable companies outsource security leadership, what Estonia's talent shortage means under NIS2, and how NeverHack "eats its own dog food" by acting as its own vCISO client.Practical, candid, and jargon-free — essential listening for anyone facing certification or deciding whether to hire or outsource.🎧 Listen now. Connect with Louis & Andres on LinkedIn, and visit neverhack.com to learn more. Subscribe for more from the NeverHack Cybercast.
Embed this episode
NOW PLAYING
What ISO 27001 Recertification Actually Looks Like
No transcript for this episode yet
Similar Episodes
No similar episodes found.
Similar Podcasts
No similar podcasts found.