ISO/IEC 27006: A standard that provides guidelines and requirements for bodies providing audit and certification of an information security management system (ISMS) in accordance with ISO/IEC 27001. It’s aimed at ensuring the competency, consistency, and impartiality of the organizations conducting ISMS certifications. Adopting ISO/IEC 27006 helps certification bodies provide robust and credible ISMS certifications, enhancing trust in the organization’s information security capabilities.
Categories: CC D1: Security Principles | CCSP D6: Legal - Risk and Compliance | CISM D1: Information Security governance | CISSP D1: Security and Risk Management | Security+ D5: Security Program Management and Oversight | SSCP D3: Risk Identification Monitoring and Analysis
« Back to Glossary Index