Standards & Frameworks
ISMS
Acronym: Information Security Management System
The governance, policies, processes and controls that an organisation uses to manage information security risk.
An ISMS is the central artefact certified under ISO/IEC 27001. It is process-based, risk-driven and continuously improved through internal audit, management review and corrective action.