Independent consulting in marketing, regulatory compliance (ISO, ENS, GDPR), digitization and B2B sales from Aranda de Duero (Castilla y Leon) covering all of Spain.
Independent consulting in marketing, regulatory compliance (ISO, ENS, GDPR), digitization and B2B sales from Aranda de Duero (Castilla y Leon) covering all of Spain.
ISO 9001 (quality), ISO 14001 (environment), ISO 27001 (information security) and ISO 45001 (occupational health and safety). Implementation, internal audits, certification preparation and integrated management systems. For private organisations and public bodies.
The ISO catalogue is broad, but four standards cover most needs: 9001 (quality), 14001 (environment), 27001 (information security) and 45001 (occupational health and safety). Each has its own scope and specific requirements; combined as an integrated management system (IMS), they reinforce each other and avoid duplication.
My job: help you understand what actually applies to you, in what order to tackle compliance, which controls are critical and which are cosmetic, and how to demonstrate it when audit time comes.
It applies as long as you serve Spanish customers or process Spanish data; the framework is mandatory above thresholds we summarise in the table.
Indicative ranges for SMEs 10-50 employees: 2,500-12,000 EUR for documentation + auditor fees vary by AENOR / BV / SGS / LRQA.
BOE references RD 311/2022 (ENS), Regulation EU 2016/679 (GDPR), LOPDGDD, NIS2, DORA and the EU AI Act 2024/1689 depending on scope.
Average runs 4-7 months for a single ISO. Compound integrated SGI (9001+14001+27001) usually 8-12 months.
Yes, Kit Consulting 2026 covers up to 24,000 EUR in advisory hours; Kit Digital covers tools (CRM, ERP, ciberseguridad) up to 29,000 EUR.