We use cookies to give you the best experience and to help improve our website

Find out what cookies we use and how to disable them

CEN/CLC/JTC 13 N 579 Requirements for bodies providing audit and certification of information security management systems — Part 1: General

Scope

ISO/IEC 27006-1 specifies requirements and provides guidance for bodies providing audit and certification of an information security management system (ISMS), in addition to the requirements contained within ISO/IEC 17021-1 and ISO/IEC 27001. It is primarily intended to support the accreditation of certification bodies providing ISMS certification. 

The requirements contained in this International Standard need to be demonstrated in terms of competence and reliability by any body providing ISMS certification, and the guidance contained in this International Standard provides additional interpretation of these requirements for any body providing ISMS certification.

NOTE This Standard can be used as a criteria document for accreditation, peer assessment or other audit processes.

Purpose

ISO/IEC 27006 is widely recognised standard within the 2700x ISMS family of standards. This standard is a fundamental basis for the certification of information security management systems The adoption as European Standard would harmonize the European market regarding the certification of Information security management systems.

Comment on proposal

Required form fields are indicated by an asterisk (*) character.


Please email further comments to: debbie.stead@bsigroup.com

Follow standard

You are now following this standard. Weekly digest emails will be sent to update you on the following activities:

You can manage your follow preferences from your Account. Please check your mailbox junk folder if you don't receive the weekly email.

Unfollow standard

You have successfully unsubscribed from weekly updates for this standard.

Error