collevo.bsky.social
@collevo.bsky.social
You can't outsource responsibility because you can't out source consequences.
Read our latest article on ISO 42001 the International Standard for AI Management Systems
www.linkedin.com/pulse/you-ca...
You Cannot Outsource the Consequences - ISO 42001
“Why is this my job to check? Isn’t that what we’re paying them for?” It is a familiar frustration in AI governance discussions. It is also where many organisations realise they misunderstood the deal...
www.linkedin.com
January 27, 2026 at 10:38 AM
Continual improvement is one of the most misunderstood ideas in ISO management systems.

Our latest issue talks about how to improve by becoming a learning organisation and not via annual improvement workshops.

www.linkedin.com/pulse/contin...
Continual Improvement Isn’t a Workshop. It’s a Learning Loop.
Continual improvement is one of the most misunderstood ideas in ISO management systems. In theory, it sits in Clause 10, intended as an acknowledgement that the best management systems don’t sit still...
www.linkedin.com
January 25, 2026 at 6:13 PM
Why Your ISMS Fails the Moment It Becomes a Project, Not an Upgrade.

The moment information security is framed as something to complete, rather than something to upgrade, it begins to drift away from the organisation it is supposed to protect.
Why Your ISMS Fails the Moment It Becomes a Project, Not an Upgrade.
The moment information security is framed as something to complete, rather than something to upgrade, it begins to drift away from the organisation it is supposed to protect.
open.substack.com
January 22, 2026 at 5:22 PM
Reposted
When the rich are buying bunkers, does it not occur to them that that money would be better spent creating a world that doesn’t need bunkers?
January 14, 2026 at 12:04 AM
Everything ISO 42001
What is it? Why does it exist?
open.substack.com
January 19, 2026 at 12:41 PM
Climate change considerations are now MANDATORY in ISMS implementations.
Key requirement: Organisations must assess whether climate change affects their information security objectives.
After Google/Oracle data centres shut down in heatwave, this makes perfect sense.
www.collevo.me/blog/climate...
December 11, 2025 at 12:29 PM
Unpopular opinion: Your "cost centre" security team is actually your biggest untapped revenue driver.
68% of consumers worry about data privacy
70% will share more data for benefits + strong protection

Read the full blog here: isoknowledgebase.online/read-our-blo...
December 8, 2025 at 2:06 PM
London Under Siege: 550,000 Residents Cut Off by Preventable Cyber-Attack
Phone lines down, online services crashed, essential public services offline.

Read the full analysis: isoknowledgebase.online/read-our-blo...
November 27, 2025 at 4:27 PM
Your SIEM catches 70% of external attacks but misses 80% of insider threats. Here's what's hiding in plain sight. Read our blog here: www.collevo.me/blog/beyond-...
November 24, 2025 at 12:07 PM
The Cloudflare Outage That Could Have Been Prevented: A Masterclass in Missing ISO 27001:2022 Controls
open.substack.com/pub/jenfen27...
The Cloudflare Outage That Could Have Been Prevented: A Masterclass in Missing ISO 27001:2022 Controls
The Anatomy of a Preventable Disaster
open.substack.com
November 21, 2025 at 11:04 AM
The Critical Skills Gap in ISO 27001: Why Cutting Corners on ISMS Competence Puts Your Organisation at Risk
open.substack.com/pub/jenfen27...
The Critical Skills Gap in ISO 27001: Why Cutting Corners on ISMS Competence Puts Your Organisation at Risk
Deskilling might be cheap upfront, but potentially fatal when trouble hits.
open.substack.com
November 20, 2025 at 11:07 AM
You Can’t Wish Operational Quality into Existence. open.substack.com/pub/jenfen27...
September 19, 2025 at 9:28 AM
The ISO 27001 Paradox: Your Security Standard Could be Creating Security Risks open.substack.com/pub/jenfen27...
The ISO 27001 Paradox: Your Security Standard Could be Creating Security Risks
Companies with ISO 27001 certification actually see 35% more shadow IT than those without.
open.substack.com
September 18, 2025 at 1:42 PM
The Critical Skills Gap in ISO 27001: Why Cutting Corners on ISMS Competence Puts Your Organisation at Risk
open.substack.com/pub/jenfen27...
September 17, 2025 at 3:52 PM
ISO 27001:2022 Complete Implementation Guide
Step-by-Step Embedded Implementation Methodology for UK Organisations - From Operational Discovery to Certification.

This guide applies our revolutionary embedded implementation methodology.

isoknowledgebase.online/ISO-27001/em...
September 16, 2025 at 8:49 AM
Reposted
EXPOSED: Fake water nationalisation tag would still save £3 billion a year.

University of Greenwich research shows how taking back control of our water delivers a better deal for the public.

Sign our petition to bring water into public ownership:
weownit.org.uk/act-now/lets...
April 7, 2025 at 3:07 PM
Reposted
Let’s share this one more time: advice for US government scientists before the new administration takes over. 🧪🌎

therevelator.org/scientists-m...
Advice for U.S. Government Scientists: Lessons Learned From the ‘Muzzling’ of Their Canadian Counterparts • The Revelator
The next four years will be awful for the science and conservation community. By learning from past experiences, we can minimize the damage.
therevelator.org
January 19, 2025 at 7:33 PM
Just some cute dogs, because I think we need them this week
January 23, 2025 at 1:16 AM