NBN ISO/IEC 27001:2023

Information security, cybersecurity and privacy protection — Information security management systems — Requirements (ISO/IEC 27001:2022)

WITHDRAWN

About this standard

Languages
English, French and Dutch
Type
NBN
Standards committee
ISO/IEC JTC 1/SC 27
Status
WITHDRAWN
Publication date
16 January 2023
Replaced by
NBN EN ISO/IEC 27001:2023
Amended By
NBN ISO/IEC 27001:2022/Amd 1:2024
ICS Code
35.030 (IT Security)
Additional information
This standard does not supersede NBN EN ISO/IEC 27001:2017, this version will be withdrawn once the European version is adopted. The NBN, as a member of CEN, is normally obliged to wait for the publication of the European version (standstill obligation). CEN/CENELEC agreed to grant derogation from standstill to all CEN and CENELEC Members for ISO/IEC 27001:2022.
Withdrawn Date
27 July 2023

About this training

Summary

This document specifies the requirements for establishing, implementing, maintaining and continually improving an information security management system within the context of the organization. This document also includes requirements for the assessment and treatment of information security risks tailored to the needs of the organization. The requirements set out in this document are generic and are intended to be applicable to all organizations, regardless of type, size or nature. Excluding any of the requirements specified in Clauses 4 to 10 is not acceptable when an organization claims conformity to this document.