Verksamhetsfokus Sweden

Verksamhetsfokus is a company whose idea is to help other organizations (public sector, companies and associations) to live up to the requirements they have, including standards they must / want to comply with. With our experience and our simple approach, we do this in a cost-effective way and in a way that does not create the paper trails that are often the result of classic management systems.

We have been shaped by our respective experiences and situations to be driven by other drivers than just our own financial wealth, but we respect that others are driven by it, and try to support businesses and our competitors in their successful entrepreneurship. This means that we opt out of certain clients, are not attracted by offers of more money, nor do we have the ambition to grow by spending more time on our own administration, but choose to try to contribute to a more resilient society by supporting others to maximize the return on our efforts.

Our experience shows that it is difficult to maintain a good system for managing and monitoring operations, without having some form of system support to help the company comply with its chosen ways of working. Therefore, we regularly choose to use when we help our customers and also encourage our competitor colleagues to use similar tools to support their customers.

Read more on Our method and on Ledningssystemet Sverige AB’s website.

Björn Strandberg Klug

Licensed psychologist
Officer
Tel: 070-755 48 09

Björn often has assignments as a consultant to customers who want to be certified against any of the standards we offer, but also works as an audit leader at several accredited certification bodies, and supports certification bodies to become and continue to be accredited for certification of, among other things, information security management systems according to ISO 27001.

Björn is audit leader for ISO 9001 (quality management system), ISO 14001 (environmental management system), ISO 45001 (occupational health and safety management system) and ISO 27001 (information security management system).

Björn has a particular strength in monitoring and managing new and existing regulatory requirements in a wide range of areas.

Björn is employed by Källekullen Psykologi AB, which is a subcontractor to Verksamhetsfokus Sverige AB.

“This is not fantastic

Through my years in the public sector in general and the Armed Forces in particular, I have gained experiences that characterize my work as a consultant and auditor. It is not least the understanding of working in politically controlled organizations (which often have more in common than you might think with larger groups, the common denominator is “someone else decides”), experience of working in an organization where what others call crisis and misery can be called Monday morning and not least the understanding of how important it is to create a common goal image that focuses on the core mission.

These experiences shape my approach to work, mission and not least what constitutes my core values. I am happy to work with private and public organizations and help to establish increased systematics and efficiency based on the organization’s requirements, conditions and vision. Above all, I strive to do it on their terms. I provide as little or as much support and advice as they need, but no more than they need to charge more hours.

In the assignments, I try to act as the external truth-teller they ask me to be. I will not say that things that are bad are good, that technical solutions full of holes are safe or that the management and governance of the business is systematic and fantastic when senior management completely misses (consciously or unconsciously) regulatory requirements that are there.

Similarly, I have relatively little patience with nonsense procedures, documents that no one has ever asked for or needed (or even knows where they come from) or when a business tries to lead itself in separate tracks; for example, a business track, an environmental track and a safety track. My recommendation and belief is that the business should be run as a business, in the designated direction of the business, and that multiple perspectives need to be considered for it to be successful.

I will not tell others how to run their business, but I will share what I see.

Rickard Svenningsson

Master of Science in Computer Engineering
Tekn.lic mechanical engineering
Tel: 076-555 95 60

Rickard often acts as an audit manager at accredited certification bodies and supports several certification bodies with training and support for auditors and sellers.

Rickard sometimes has assignments as interim CEO, Security Manager and other roles where broad experience helps.

Rickard is an audit manager for ISO 9001 (quality management system), ISO 14001 (environmental management system) and ISO 27001 (information security management system) and ISO 22301 (business continuity management system), among others.

Rickard has a particular strength in development, technology and finding practical solutions to problems faced by our customers.

Rickard is employed by Infosective AB, a subcontractor to Verksamhetsfokus Sverige AB.

” We can only manage the business in one way

When managing a business, there must be a way of working where all aspects are considered simultaneously when making decisions. I often see management trying to make complex issues someone else’s problem, often in environment and safety, simply because there is a lack of competence in the management team. The same is true when responsibility and authority are allocated in the organization (for example, for purchasing), as there are no requirements for competence for those who make important decisions about purchasing. All in all, this means that businesses take great risks and also contribute to the social problems we have. If we do not have the right requirements for purchasing, we contribute to fuelling organized crime, the exploitation of children and adults, human trafficking and facilitate foreign powers that want to harm our society. This is not okay.

A company’s management needs to have sufficient competence represented when decisions are made, or have good processes to ensure that competence is involved before decisions are executed. A company needs to ensure that everyone in the company has a common understanding of the challenges we have to deal with.

When I act as a consultant or auditor, I will tell you what I see, and demand that real work is done that has an effect. Documents are rarely the solution to any real problems. A business must understand its challenges, be able to explain its risks and how it intends to deal with them.

A realization that problems remain to be solved and that there are skills that need to be raised in management wins plus points in my book.

I have been living with a chronic illness for many years, which creates perspective on what is important in life. I want to make a real difference for someone, and I am convinced that management systems save lives.


Operations policy

This document constitutes the policy of Verksamhetsfokus Sverige AB (referred to as Verksamhetsfokus in this document) and is the sole policy of Verksamhetsfokus.

Evaluating and improving our working methods and complying with applicable legislation, agreements entered into and other binding requirements is a matter of course. The purpose of the policy is to clarify how we work and our values both towards customers and Verksamhetsfokus representatives.

1.1 Business concept

The business concept of Verksamhetsfokus is to sell expertise in the field of Information Security in particular and management systems in general. We shall be experts in Information Security and constantly keep ourselves updated in the field. We shall never be a company that sells ready-made package solutions such as document templates and ready-made management systems. To counteract such a development, e.g. general document templates developed within customer projects and internal projects shall be made available free of charge on the Verksamhetsfokus website when copyright does not stop us. This immunizes the company against charging for the same work several times, which is common with many of our competitors.

As a representative of Verksamhetsfokus, it should be fun to go to work. Not everything is fun all the time, but we will not work on assignments that lower our work ethic in the long term, but we are happy to work with tight deadlines and tough challenges. By having business terms that allow the customer mutual right to immediate termination in the event that we do not pull even with the customer, we ensure that all parties have a common interest in performing within the assignments, both from Operations Focus and the customer’s side.

1.2 Conduct

As a representative of Business Focus, you are humble to the fact that the world is changing and that other people and companies may have better ideas than you. This could be the customer, our competitor colleagues or others.

As a representative of Business Focus, you are happy to recommend one of Business Focus’ good competitors to customers and prospective customers when you believe that the competitor can provide a better or cheaper solution for the customer. If you are not comfortable recommending a competitor simply because it is a competitor, you should examine yourself and your competence and work on your shortcomings and become the expert you are expected to be.

Business focus representatives should not pretend and differentiate between different people. If you are a pig, be equally piggy to all persons. If you are friendly and soft, be so to all people. Business Focus has intelligent customers who see through deception and expect honest and straightforward communication. When the customer asks for our opinion, we deliver it, whether it’s the CEO of a large company or someone else asking for it.

As a representative of Business Focus, you dress and behave in a way that makes you feel safe. We should never come across as people with exclusive and expensive lifestyles. This means not wearing expensive branded clothes and accessories. A good benchmark is that we never at any time display accessories and clothing worth more than 20% of a price base amount. We also do not drive around in expensive cars (the benchmark is that cars should not have a taxable benefit value over 8.5 price base amounts) in our assignments.

1.3 Pricing

The business focus must be a profit-making company in order to develop well over time. We do not care about “market prices” because we sell our time and expertise. Instead, we calculate every six months what hourly rate should apply to our services based on our own costs with a mark-up for profit. We must always have a margin to be able to carry out skills development. Our prices are posted on the website and apply equally to all companies, large and small. We never negotiate our prices but are open to feedback on our pricing for the next pricing iteration. In rare cases, temporary deviations from the pricing model may be made, and then due to a special circumstance.

In practice, our pricing model means that our prices are clearly much lower than those of our competitors. However, this is not an end in itself.

We try, as far as possible, to flat-rate travel costs using establishment costs and a fixed average cost for board and lodging. This simplifies the administration for Verksamhetsfokus and our customers, and also provides predictability when planning future establishments.

1.4 Information security

At Verksamhetsfokus we need to live as we learn and we handle sensitive information within the framework of our business and often receive great confidence from our customers. Our customers should never doubt that we handle their sensitive information in a satisfactory manner.

Our computers and mobile devices are encrypted with full-disk encryption and good passwords or two-factor authentication. Good passwords are at least 12 characters long and contain at least 3 out of 4 of the categories upper case, lower case, numbers and punctuation. For mobile phones, these must be protected with a code and have autowipe turned on after a few failed attempts.

Our computers are equipped with antivirus software.

Passwords that we obtain from the client are only recorded in such a way that they are protected by at least encryption and password protection. Normally, a password manager is used that requires multi-factor authentication.

At the end of the assignment, we delete all information we have received from the customer as soon as the customer confirms that the information is no longer needed.

At Verksamhetsfokus, we are experts in information security and are expected to treat information accordingly. This applies, for example, to remote work, where we naturally encrypt all data traffic when connecting to public networks and think carefully when choosing which tasks may be suitable when traveling.