ISO/IEC DIS 27006-2

Requirements for bodies providing audit and certification of information security management systems — Part 2: Privacy information management systems ISO/IEC DIS 27006-2

General information

40.60 Close of voting   Oct 11, 2023

ISO/IEC

ISO/IEC JTC 1/SC 27 Information security, cybersecurity and privacy protection

International Standard

35.030   IT Security | 03.120.20   Product and company certification. Conformity assessment

Scope

This document specifies requirements and provides guidance for bodies providing audit and certification of a privacy information management system (PIMS) according to ISO/IEC 27701 in combination with ISO/IEC 27001, in addition to the requirements contained within ISO/IEC 27006. It is primarily intended to support the accreditation of certification bodies providing PIMS certification.
The requirements contained in this document need to be demonstrated in terms of competence and reliability by any body providing PIMS certification, and the guidance contained in this document provides additional interpretation of these requirements for any body providing PIMS certification.
NOTE This document can be used as a criteria document for accreditation, peer assessment or other audit processes.

Life cycle

PREVIOUSLY

PUBLISHED
ISO/IEC TS 27006-2:2021

NOW

IN_DEVELOPMENT
ISO/IEC DIS 27006-2
40.60 Close of voting
Oct 11, 2023