By document type
| Category | Files |
|---|---|
| Manuals | 2 |
| Policies | 1 |
| Procedures & SOPs | 15 |
| Forms & Records | 12 |
| Checklists & Audit Tools | 8 |
| Registers, Logs & Matrices | 2 |
| Training & Awareness | 1 |
| Guides & Work Instructions | 1 |
Key documents
| Reference | Document | Format |
|---|---|---|
| AGS-QM-01 | Quality & Information Security Manual | Word |
| AGS-POL-01 | Information Security Policy | Word |
| AGS-CL-08 | ADHICS Self-Assessment Checklist — Domain Summary | Word |
| AGS-GD-01 | ADHICS Implementation Roadmap & Guidance | Word |
| AGS-PR-02 | Risk Assessment & Treatment Procedure | Word |
| AGS-PR-12 | Information Security Incident Management Procedure | Word |
- Need the complete document list? Request it — same day
- Want to check the quality first? Preview free samples
Overview
The Abu Dhabi Healthcare Information and Cyber Security Standard (ADHICS), issued by the Department of Health — Abu Dhabi, is the mandatory framework for protecting health information and securing information assets across every DoH-licensed healthcare entity in the Emirate. Version 2 (2024) sets governance, risk-management and control requirements spanning human resources security, asset management, access control, operations and communications security, third-party security, information systems acquisition, incident management and business continuity, with implementation tiers scaled to entity size and criticality.
This package turns that standard into an operating management system. It fixes the ISMS scope, sets the governance structure behind it, and carries it into procedures for risk assessment and treatment, asset classification, access management, network and change control, and incident response. A domain-level self-assessment and phased implementation roadmap show where the organisation stands against each ADHICS domain and what to close first; the control families overlap enough to run alongside an existing ISO/IEC 27001 programme.
What this system covers
- Governance and policy — ISMS scope, governance structure, document and record control.
- Risk assessment, treatment and asset classification — asset register, treatment decisions, secure disposal.
- Human resources security — confidentiality and acceptable use undertakings, role-based competence, exit clearance.
- Access control and user account management — access requests, account administration, periodic rights review.
- Physical, operations and communications security — facilities protection, change management, network security.
- Third-party security and secure systems acquisition — supplier assessment, development and go-live controls.
- Data privacy and incident management — protection of patient information, incident reporting and response.
- Business continuity, internal audit and ADHICS self-assessment — backup and restore testing, corrective action.
Who it's for
Written for information security officers and compliance managers at DoH-licensed hospitals, clinics, support-service providers, TPAs and health-tech vendors — usually with an ADHICS audit or survey approaching and no ISMS documentation to put in front of it. You set the scope and implementation tier, adapt the procedures to how the organisation runs, and arrive at assessment with a governed system and records evidencing each control domain.
Everything you get
Every toolkit gives you a full set of working documents for your standard, ready to edit and use.
Native Microsoft files. Add your logo and adapt every document to how you work.
Your full toolkit arrives as a ZIP the moment payment clears.
One purchase covers everyone in your organisation. No per-seat fees.
Built by people who run real audits, so the content matches what assessors check.
One payment, perpetual licence for your organisation. No subscriptions, no renewals.
Full refund if your files are faulty, incomplete or not as described and we can't put it right
Frequently asked questions
What exactly do I receive?
A downloadable ZIP containing the full set of ready-to-use documents for this toolkit — manuals, procedures, forms, records, checklists, guidance and training material, all in editable Word and Excel format. The exact document count is shown at the top of this page.
Are the documents really editable?
Yes. Every file is native Microsoft Word or Excel — no locked PDFs. Add your logo, change wording, and tailor the content to your organisation. The toolkit is yours to keep and reuse.
Does this certify my organisation?
No. These are documentation toolkits aligned to the relevant standard to help you prepare. Certification itself is issued by an accredited certification body after their audit. Our toolkits give you a strong, audit-ready starting point.
How is it delivered?
Instantly and digitally. There's no physical shipment — you download the files right after payment and receive a backup link by email.
Do I get updates?
Yes. If we revise this toolkit, you're entitled to the updated version at no extra cost — just contact us with your order details.
What is your refund policy?
These are digital products, so once a toolkit has been downloaded we cannot take it back. If you have not downloaded yet, contact us and we will cancel the order and refund you in full. We also refund in full if the files are damaged, incomplete, or not what the product page described.
Cannot find your standard?
Tell us which scheme you work to. We will point you to the right toolkit.




