ISO 27001 AI MCP
Official
ISO 27001 AI MCP
ISMS-Audit, Gap-Analyse nach Anhang A und Erstellung der Anwendbarkeitserklärung (Statement of Applicability) für KI/ML-Systeme gemäß ISO 27001:2022.
Installation · Tools · Preise · Attestierungs-API
Warum existiert dieses Projekt?
ISO 27001:2022 ist der globale Standard für Informationssicherheitsmanagement. Die Revision von 2022 fügte 11 neue Kontrollen hinzu (einschließlich A.5.23 Cloud-Dienste, A.8.11 Datenmaskierung, A.8.12 Verhinderung von Datenabfluss), die sich direkt auf KI-Implementierungen auswirken. Organisationen, die KI-Systeme betreiben, müssen Modell-Trainingspipelines, Inferenz-Endpunkte und Datenflüsse in ihren ISMS-Geltungsbereich aufnehmen.
Die meisten Beratungsunternehmen berechnen 15.000 bis 30.000 pro ISO 27001-Gap-Analyse. Dieses MCP automatisiert das ISMS-Audit für alle 93 Kontrollen des Anhangs A, erstellt Anwendbarkeitserklärungen, führt Risikobewertungen gemäß ISO 27005 durch, erstellt Querverweise zu KI-spezifischen Frameworks und klassifiziert Sicherheitsvorfälle gemäß ISO 27035.
Related MCP server: Cybersecurity AI MCP
Installation
pip install iso-27001-ai-mcpTools
Tool | ISO-Referenz | Funktion |
| Klauseln 4-10 | Vollständiges ISMS-Audit gemäß ISO 27001:2022 Management-Klauseln |
| ISO 27005 | Informationssicherheits-Risikobewertung für KI-Assets |
| Anhang A (93 Kontrollen) | Kontroll-für-Kontroll-Gap-Analyse gemäß Anhang A von 2022 |
| Anhang A + KI-Frameworks | Zuordnung von ISO 27001-Kontrollen zu ISO 42001 / EU AI Act Anforderungen |
| Klausel 6.1.3 | Erstellung der Anwendbarkeitserklärung mit Begründungen |
| ISO 27035 | Klassifizierung und Triage von KI-Sicherheitsvorfällen |
Beispiel
Prompt: "Run an ISO 27001 gap analysis on our ML training pipeline.
We store training data in S3, run training on GPU clusters in eu-west-1,
and deploy models via a REST API with no authentication."
Result: Gap analysis across Annex A with critical findings on unauthenticated
API endpoints, missing data deletion policies, absent cloud service agreements,
and no DLP controls on model outputs. Statement of Applicability generated
with all 93 controls assessed.Preise
Stufe | Preis | Was Sie erhalten |
Kostenlos | £0 | 10 Aufrufe/Tag — ISMS-Audit + Gap-Analyse |
Pro | £199/Monat | Unbegrenzt + HMAC-signierte Attestierungen + Verifizierungs-URLs |
Enterprise | £1.499/Monat | Multi-Mandanten-fähig + Co-Branding-Berichte + Webhooks |
Attestierungs-API
Jedes Pro/Enterprise-Audit erstellt ein kryptografisch signiertes Zertifikat:
POST https://meok-attestation-api.vercel.app/sign
GET https://meok-attestation-api.vercel.app/verify/{cert_id}Zero-Dep-Verifizierer: pip install meok-attestation-verify
Links
Website: meok.ai
Alle MCP-Server: meok.ai/labs/mcp/servers
Enterprise-Support: nicholas@csoai.org
Lizenz
MIT
This server cannot be deployed
Maintenance
Related MCP Connectors
AI governance MCP server for EU AI Act compliance and jurisdiction verification
Compliance frameworks (SOC 2, ISO 27001, CMMC, NIST, more) delivered to AI agents as MCP tools.
MEOK MCP Hardening MCP — automated security red-team for any MCP server. Maps OWASP LLM Top 10
EU compliance corpus across 8 frameworks (NIS2, DORA, AI Act, ISO 27001 + more) via MCP.
Related MCP Servers
- AlicenseNot gradedqualityCmaintenanceNIST RMF AI - MCP server providing AI-powered tools and automation by MEOK AI Labs8 npm72 PyPIMIT
- AlicenseAqualityBmaintenanceCybersecurity AI - MCP server providing AI-powered tools and automation by MEOK AI Labs58 npm34 PyPIMIT
- AlicenseAqualityBmaintenancePCI DSS - MCP server providing AI-powered tools and automation by MEOK AI Labs540 PyPIMIT
- AlicenseAqualityCmaintenanceISO 42001 AI - MCP server providing AI-powered tools and automation by MEOK AI Labs107 npm63 PyPI1MIT