• Post a Project

ISO 27001 & SOC 2, built to last beyond audit

27kay helps SaaS companies design, certify, and operate information security programs that scale with the business. We cover the full compliance lifecycle: scoping, gap assessment, ISMS implementation, internal audit, certification support, and ongoing vCISO operation.

  • Min project size
    $5,000+
  • Hourly rate
    $100 - $149 / hr
  • Employees
    2 - 9
  • Locations
    Tallinn, Estonia
  • Year founded
    Founded 2023

Overview by:

Reviewer avatar
Lyudmil Arkov
Founder & Principal Consultant About the Team

2 Locations

  • Tallinn , Estonia
  • Sofia , Bulgaria

No have been added yet...

    Highly Rated Similar Providers

    Have you worked with 27kay?

    Share your experience working with 27kay on a past project by leaving a review for buyers around the world

    Submit a Review

    Our Story

    27kay is a boutique, remote-first security consultancy led by Lyudmil Arkov. Built on 22+ years in IT and a decade in security leadership, we help SaaS companies turn ISO 27001, SOC 2, NIS2, TISAX, C5, and ISO 42001 into practical, business-aligned controls. Our work covers the full compliance lifecycle: scoping, gap assessment, ISMS build, certification support, and ongoing operation. The goal is a security program that scales with your business and produces value year after year.

    Meet the Team

    Lyudmil Arkov

    Lyudmil ArkovFounder & Principal Consultant

    Founder of 27kay. 22+ years in IT and security, spanning telecom, sysadmin, and security leadership. Master's in Cybersecurity (New Bulgarian University). Focus: ISO 27001, SOC 2, NIS2, and vCISO engagements for SaaS companies.

    What Sets Us Apart

    Lifecycle-led, not certification-only

    We treat ISO 27001 and SOC 2 as ongoing programs, not one-time projects. Engagements span scoping, gap assessment, ISMS build, certification, and continuous operation in one continuous arc.

    Practitioner-led delivery

    Beyond consulting, we operate ISMS programs inside real-world environments. That hands-on experience shapes every recommendation, every control design, and every audit-readiness call.

    Stack-native ISMS

    We meet you where you already work. ISMS delivery integrates with your existing stack: Notion, Linear, GitHub, Jira, Confluence, Vanta. The security program lives where work happens, and adoption follows.

    Locations (2)

    Sepapaja 6 TallinnEstonia 15551

    1

    Contact 27kay

    If you’re not seeing exactly what you need here, send this company a custom message. You can talk about your project needs, price, and timeline to get started on your project.

    Get connected to see updates from 27kay like new case studies, latest reviews, their latest masterpieces in their portfolio, delivered straight to you.