FFPolicy SuiteSign in

Information security policies,
managed like they matter.

The Policy Suite keeps your ISMS documents, registers and reviews in one controlled place — versioned, audit-ready and tailored to each organisation.

A complete policy library

Policies, standards and procedures aligned to ISO 27001:2022, Cyber Essentials and UK GDPR — ready to tailor, not write from scratch.

Tailored per client

Edit any section for one organisation while inheriting the master — with template updates flagged for review, never silently overwritten.

Living registers

Asset, access, risk and training registers fed from your systems — RMM, Entra ID, AD — with manual edits that survive every re-import.

Document control built in

Versioning, approvals and immutable revision snapshots — with the policy review register generated live from the same data.

Reviews that chase themselves

Email reminders as document and register reviews fall due — 30, 14 and 0 days out, then weekly while overdue.

Share without oversharing

Time-limited external links for auditors and clients, with personal and sensitive content redacted automatically.