ISO/IEC-27006 › Information technology - Security techniques - Requirements for bodies providing audit and certification of information security management systems
Show Complete Document History
The following bibliographic material is provided to assist you with your purchasing decision:
ISO/IEC 27006:2015 specifies requirements and provides guidance for bodies providing audit and certification of an information security management system (ISMS), in addition to the requirements contained within ISO/IEC 17021‑1 and ISO/IEC 27001. It is primarily intended to support the accreditation of certification bodies providing ISMS certification.
The requirements contained in this International Standard need to be demonstrated in terms of competence and reliability by any body providing ISMS certification, and the guidance contained in this International Standard provides additional interpretation of these requirements for any body providing ISMS certification.
NOTE This International Standard can be used as a criteria document for accreditation, peer assessment or other audit processes.
To find similar documents by classification:
03.100.70 (Management systems Standards included in this sub-group shall also be included in other groups and/or sub-groups according to their subject Including environmental management systems (EMS), road traffic management systems, energy management systems, health care management systems, etc.)
This document comes with our free Notification Service, good for the life of the document.
This document is available in either Paper or PDF format.
Sept. 30, 2015
ISO/IEC JTC 1/SC 27