The ISO/IEC 27001 standard for information security and cybersecurity received an update. The large increase in cyberattacks makes this information security management system (ISMS) invaluable for organizations that want to get and keep their information security in order. Because secure information is vital in today's increasingly digital world.
ISO/IEC 27001 contains the requirements to establish, implement, maintain and improve an information security management system in your organisation .
To that end, ISO/IEC 27001 uses the security controls from the ISO/IEC 27002 Code of Practice in Appendix A.
Organizations with ISO/IEC 27001 certification will have the opportunity to incorporate the changes and adapt their ISMS accordingly. A transition period of 3 years is provided for this purpose. Thus, the changes will have no impact on their current certification.
ISO/IEC 27001 has since become the international common language for IT security across all industry sectors. The standard is used for risk management, cyber resilience and operational excellence.
Properly applied, this cybersecurity standard is a roadmap to information security excellence. And thus the foundation for building and managing a secure future.
Want to buy the new standard?
The updated information security standard is available in our e-shop.
Want to know more about information security?
We nicely list everything you need to know about ISO/IEC 27001, the international standard for information security, for you.