Firms in ON
Firms in the ISO27K directory based in ON. Most compliance work is done remotely, so treat location as a tie-breaker rather than a filter.
12 firms.
BALANCED+ Unclaimed
IT and security firm providing ISO 27001 gap assessments, policy development, control implementation and audit preparation for clients, and does not issue certificates.
Canadian Cyber Unclaimed
Governance, risk and compliance consultancy that guides clients through ISO 27001 scoping, gap analysis, policy development and implementation ahead of an external certification audit, and does not issue certificates.
Coral eSecure Unclaimed
Consultancy offering ISO 27001 ISMS consulting and ISO 42001 AI management system consulting, with a listed Oakville office, and does not issue certificates.
DNV Unclaimed
Accredited management systems certification body with Canadian offices in Toronto, Calgary, Guelph, Halifax, Montreal, St John's and Vancouver that audits and issues ISO/IEC 27001 certificates.
Elastify Unclaimed
Advisory and consulting firm that runs SOC 2, ISO 27001 and HIPAA compliance programs for clients, and does not issue certificates.
Intertek Unclaimed
Certification body offering ISO/IEC 27001 and ISO/IEC 42001 certification audits, serving North America including Canada through its Toronto operation.
IRM Consulting & Advisory Unclaimed
Consultancy offering ISO 27001 and ISO 42001 gap assessments and readiness work, fractional vCISO services and penetration testing, and does not issue certificates.
PricewaterhouseCoopers Canada Unclaimed
Certification body accredited by the Standards Council of Canada under ISO/IEC 27006-1 and ISO/IEC 42006 to audit and issue ISO/IEC 27001 and ISO/IEC 42001 certificates.
Sagentix Advisors Unclaimed
Ottawa advisory firm whose cyber and AI practice sells ISO 27001 and SOC 2 readiness alongside privacy and AI governance work. Not a CPA firm and does not sign SOC 2 opinions.
SAV Associates Unclaimed
CPA and cybersecurity advisory firm that consults on ISO 27001 gap analysis, Statement of Applicability and ISMS buildout, and does not issue certificates.
Secrecy Evolution Unclaimed
Consultancy that performs ISO 27001 gap assessments mapped to Annex A and delivers remediation roadmaps and vCISO support, and does not issue certificates.
Truvo Cyber Unclaimed
Security consulting firm that builds ISO 27001 and SOC 2 programs and performs internal audits for clients ahead of third party certification, and does not issue certificates.
Get quotes instead of browsing
Describe what you need once and it reaches the firms on this page that match it.
Get quotesHow were these firms chosen?
They were listed from public information or added by the firm itself. Being listed is not a recommendation, and ISO27K does not rank firms by quality. Verified listings sit above free ones and the order inside each band is fixed.
Does it cost anything to get quotes?
No. Buyers are never charged. Firms can pay for a Verified listing, and higher-intent enquiries are offered to free listings for a fee, which is how the site is funded.
How many firms should I approach?
Three is the number that makes a quote comparable. One quote tells you a price, and two tell you which is cheaper. Three tells you what the work actually costs and which firm understood your scope.