Security Certifications for Businesses

Hello all. I've been asked to research certifications that our business can strive for that will challenge our IT security. We've already received the SAS70 Type I and II, however these are more financial and auditing certifications than IT security certifications. I know ISO 27001 is out there, however we're a small business and that is going to cost in the 10's to 100's of thousands of dollars.
Does anyone have any experience with business certifications specifically in the area of IT security?
Thanks!
Does anyone have any experience with business certifications specifically in the area of IT security?
Thanks!
Comments
I actually just received my CISSP, however I'm more looking for a certification that can be attained by a business, not an individual.
Thanks!
CompTIA Security Trustmark &
ISO/IEC27000 series of certifications, you can get certified individually (see here), but for the work place to get certified it has to go thru a process of assessments.
-Ken
edit, didn't see that you already mentioned the ISO standards