ISO/IEC 27706:2025

Information security, cybersecurity and privacy protection — Requirements for bodies providing audit and certification of privacy information management systems

Publication date:   Oct 14, 2025

General information

60.60   Standard published   Oct 14, 2025

ISO/IEC

ISO/IEC JTC 1/SC 27 Information security, cybersecurity and privacy protection

International Standard

35.030   IT Security | 03.120.20   Product and company certification. Conformity assessment

Buying

  Published

PDF - €163.35

  English   French  



Buy

Scope

This document specifies requirements and provides guidance for bodies providing audit and certification of a privacy information management system (PIMS) according to ISO/IEC 27701, in addition to the requirements contained within ISO/IEC 17021-1.
The requirements contained in this document are demonstrated in terms of competence and reliability by bodies providing PIMS certification. The guidance contained in this document provides additional interpretation of these requirements for bodies providing PIMS certification.
NOTE       This document can be used as a criteria document for accreditation, peer assessment or other audit processes.

Life cycle

PREVIOUSLY

WITHDRAWN
ISO/IEC TS 27006-2:2021

NOW

PUBLISHED
ISO/IEC 27706:2025
60.60 Standard published
Oct 14, 2025