Iso iec 27001 is an information security standard published in 2005 and revised in 2013 published by the international organization for standardization.
Iso 27001 information security framework.
The international organization for standardization iso is an independent nongovernmental organization and the world s largest developer of voluntary international standards.
Iso iec 27001 is an international standard on how to manage information security.
Certification to iso iec 27001.
In this article iso iec 27001 overview.
Like other iso management system standards certification to iso iec 27001 is possible but not obligatory.
The standard was originally published jointly by the international organization for standardization iso and the international electrotechnical commission iec in 2005 and then revised in 2013.
Some organizations choose to implement the standard in order to benefit from the best practice it contains while others decide they also want to get certified to reassure customers and clients that its recommendations have been followed.
Having a compliant framework also ensures that information security requirements are aligned with business goals and objectives while promoting the idea of security being everyone s responsibility to help you we follow requirements identified by iso 27001 standard to establish and implement an information security framework.
It details requirements for establishing implementing maintaining and continually improving an information security.
4 minutes to read 1.
Although not mandatory it is accepted in most countries as a de facto main framework for information security cybersecurity implementation.