What is ISO 27001?
The ISO/IEC 27001 standard is the most well-known framework in the ISO 27000 series, focusing on creating, implementing, optimizing, and monitoring an Information Security Management System (ISMS).
ISO 27001 specifies 10 clauses that help companies implement, apply, manage, and consistently enhance their ISMS. It lists 93 controls divided into four categories to help businesses manage information security risks.
Businesses are only required to implement controls that are relevant to their risk management strategy and ensure they mention the controls that apply to them in their Statement of Applicability (SOA).
ISO 27001 Certification: A Complete Guide to Process, Costs, and Benefits
ISO 27001 Compliance: Guide to Security Framework
ISO 27001 Requirements – A Comprehensive List [+Free Template]
ISO 27001 Series
Basics
Certification Process
Policies & Management
Risk Management
Resources & Templates
Sprinto: Your ally for all things compliance, risk, governance