Use Case

ISO 27001 Evidence

GAEZLA does not declare an organization certified. It gives the team explicit places for framework answers, system data, gaps, policy content, the statement of applicability, and recurring evidence work.

Workspace and applicability

The ISO 27001 workspace separates recorded framework context from operator decisions and documents.

  • Review section and system data with gap views.
  • Edit policy-document sections in the workspace.
  • Record control applicability, implementation state, justification, ownership, and references in the statement of applicability.

Calendar evidence

Recurring calendar work creates dated records instead of treating one attachment as proof for every period.

  • Define one-time or recurring series with a timezone-aware schedule.
  • Track each occurrence by due state, owner, notes, and framework links.
  • Attach occurrence evidence and retain series-level artifact links for review.

Value over time

How the product path is separated.

Assess

Record what is known

Enter framework and system context, then inspect the resulting gaps.

Decide

Document applicability

Record control decisions and supporting references in the statement of applicability.

Operate

Maintain dated evidence

Use recurring tasks and occurrence records to support ongoing review.

Read next

Related workflows.

Next step

Want to see this on your stack?

Book a walkthrough and I will show how this workflow maps to the tools you already run.