It seems we can’t find what you’re looking for. Perhaps searching can help.
This website uses cookies, as described in the Privacy Policy . By clicking on the “Accept All Cookies” button, or by continuing to use our website, you consent to all cookies.
ISO/IEC 27006 Information technology — Security techniques — Requirements for bodies providing audit and certification of information security management systems
This International Standard specifies requirements and provides guidance for bodies providing audit and certification of an information security management system (ISMS), in addition to the requirements contained within ISO/IEC 17021-1 and ISO/IEC 27001. It is primarily intended to support the accreditation of certification bodies providing ISMS certification.
ISO/IEC 17021-1 sets out criteria for bodies operating audit and certification of management systems. If such bodies are to be accredited as complying with ISO/IEC 17021-1 with the objective of auditing and certifying information security management systems (ISMS) in accordance with ISO/IEC 27001:2013, some additional requirements and guidance to ISO/IEC 17021-1 are necessary. These are provided by this International Standard.
The primary purpose of this International Standard is to enable accreditation bodies to more effectively harmonize their application of the standards against which they are bound to assess certification bodies.
It seems we can’t find what you’re looking for. Perhaps searching can help.