ISO/IEC PWI 27005

Information security, cybersecurity and privacy protection — Guidance on managing information security risks

General information

00.00   Proposal for new project received   Jul 9, 2026

ISO/IEC

ISO/IEC JTC 1/SC 27 Information security, cybersecurity and privacy protection

International Standard

Scope

This document provides guidance to assist organizations to:
—    fulfil the requirements of ISO/IEC 27001 concerning actions to address information security risks;
—    perform information security risk management activities, specifically information security risk assessment and treatment.
This document is applicable to all organizations, regardless of type, size or sector.

Life cycle

PREVIOUSLY

PUBLISHED
ISO/IEC 27005:2022

NOW

IN_DEVELOPMENT
ISO/IEC PWI 27005
00.00 Proposal for new project received
Jul 9, 2026