ISO/IEC 27001:2013 information security management system standard arrives
| PR Newswire Association LLC |
(Logo: http://photos.prnewswire.com/prnh/20110405/NE77664LOGO)
How business is carried out today differs vastly from the first use of BS 7799 in 1995, and technological advances mean that information security needs have also changed. The revisions will help further change perceptions amongst businesses that information security is limited to IT, and includes wider elements such as people. It also takes into account the interactions that can occur between other management system standards and issues such as Risk Management and Business Continuity Management.
ISO/IEC 27001 is one of the fastest growing management system standards used around the globe. The standard is used for third-party accredited certifications with at least 17,500 certificates having being issued in 100 countries with a continual trend of double digit growth year-on-year. Its use is supported by Code of Practice document ISO/IEC 27002. Both were developed through consensus of the international community with a membership of over 47 national standards bodies.
ISO/IEC 27001 Information technology -- Security techniques -- Information security management systems – Requirements which specifies the requirements for establishing, implementing, maintaining and continually improving an information security management system.
Key changes:
- Modified to fit the new high-level structure used in all management system standards, simplifying its integration with other management systems
- Incorporates the feedback from users of the 2005 version and generically takes into account the changing technological landscape of the last 8 years
How businesses can benefit from ISO/IEC 27001:
- Increases reputation by belonging to large percentage of recognized global businesses who have implemented the standard
- Protects them by identifying risks and putting in controls to manage or reduce them
- Helps gain stakeholder and customer trust that their data is protected
- Increases tender opportunities by demonstrating compliance and gaining status as a preferred supplier
ISO/IEC 27002 Information technology -- Security techniques -- Code of practice for information security controls gives guidelines on how to use ISO/IEC 27001 for organizational information security standards and information security management.
Key changes:
- Duplication with ISO/IEC 27001 been removed making it easier for a customer to use
- Revised and simplified guidance to address new/existing Information Security needs
How businesses can benefit from ISO/IEC 27002:
- Offers flexible set of controls to be used in the way an organization wants to protect itself (either stand-alone, with ISO/IEC 27001 or other methodologies)
- Reflects the new threats an organization faces
Ultimately ISO/IEC 27001:2013 follows the high-level structure and text that will become accepted for all management system standards. For organizations that are already certified to ISO 27001:2005, BSI has a range of tools to help clients transition to the new standard. This includes training courses, transition guides, webinars, and events. For more information go to: http://www.bsiamerica.com/iso27001
About BSI
BSI is not just another certification body. By packaging assessment, training, and our management system software tool – Entropy™ Software, BSI provides a solutions toolkit that combines it all in a comprehensive service offering and allows us to provide your organization with an integrated approach to meet your needs and embed excellence across your business. We present a one-stop value proposition from the decision to improve systems through to registration and continual improvement. From start to finish, the BSI Solutions Package helps turn complexity into simplicity. To learn more about BSI, please visit www.bsiamerica.com
Media Contacts:
SOURCE
| Wordcount: | 681 |



Advisor News
- Wall Street CEOs warn Trump: Stop attacking the Fed and credit card industry
- Americans have ambitious financial resolutions for 2026
- FSI announces 2026 board of directors and executive committee members
- Tax implications under the One Big Beautiful Bill Act
- FPA launches FPAi Authority to support members with AI education and tools
More Advisor NewsAnnuity News
- Retirees drive demand for pension-like income amid $4T savings gap
- Reframing lifetime income as an essential part of retirement planning
- Integrity adds further scale with blockbuster acquisition of AIMCOR
- MetLife Declares First Quarter 2026 Common Stock Dividend
- Using annuities as a legacy tool: The ROP feature
More Annuity NewsHealth/Employee Benefits News
- Illinois extends enrollment deadline for health insurance plans beginning Feb. 1
- Virginia Republicans split over extending health care subsidies
- Illinois uses state-run ACA exchange to extend deadline
- Fewer Americans sign up for Affordable Care Act health insurance as costs spike
- Deerhold and Windsor Strategy Partners Launch Solution that Enhances Network Analysis for Stop-Loss Carriers and MGUs
More Health/Employee Benefits NewsLife Insurance News