What is ISO/IEC 27001?
ISO/IEC 27001 is the international standard for Information Security Management Systems. It defines requirements for a risk-based, continually improving ISMS, supported by 93 Annex A controls covering organisational, people, physical and technological measures.