{"id":453669,"date":"2024-10-20T09:31:31","date_gmt":"2024-10-20T09:31:31","guid":{"rendered":"https:\/\/pdfstandards.shop\/product\/uncategorized\/bs-en-iso-iec-27006-12024\/"},"modified":"2024-10-26T17:40:13","modified_gmt":"2024-10-26T17:40:13","slug":"bs-en-iso-iec-27006-12024","status":"publish","type":"product","link":"https:\/\/pdfstandards.shop\/product\/publishers\/bsi\/bs-en-iso-iec-27006-12024\/","title":{"rendered":"BS EN ISO\/IEC 27006-1:2024"},"content":{"rendered":"

This document specifies requirements and provides guidance for bodies providing audit and certification of an information security management system (ISMS), in addition to the requirements contained within ISO\/IEC 17021-1. The requirements contained in this document are demonstrated in terms of competence and reliability by bodies providing ISMS certification. The guidance contained in this document provides additional interpretation of these requirements for bodies providing ISMS certification. NOTE       This document can be used as a criteria document for accreditation, peer assessment or other audit processes.<\/p>\n

PDF Catalog<\/h4>\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n
PDF Pages<\/th>\nPDF Title<\/th>\n<\/tr>\n
2<\/td>\nundefined <\/td>\n<\/tr>\n
4<\/td>\nEuropean foreword
Endorsement notice <\/td>\n<\/tr>\n
7<\/td>\nForeword <\/td>\n<\/tr>\n
8<\/td>\nIntroduction <\/td>\n<\/tr>\n
9<\/td>\n1 Scope
2 Normative references
3 Terms and definitions <\/td>\n<\/tr>\n
12<\/td>\n4 Principles <\/td>\n<\/tr>\n
13<\/td>\n5 General requirements
5.1 \u200bLegal and contractual matters
5.2 Management of impartiality
5.2.1 General
5.2.2 Conflicts of interest
5.3 Liability and financing
6 Structural requirements
7 Resource requirements
7.1 Competence of personnel
7.1.1 General
7.1.2 Generic competence requirements <\/td>\n<\/tr>\n
14<\/td>\n7.1.3 Determination of competence criteria <\/td>\n<\/tr>\n
16<\/td>\n7.2 Personnel involved in the certification activities
7.2.1 General
7.2.2 Demonstration of auditor knowledge and experience <\/td>\n<\/tr>\n
17<\/td>\n7.3 Use of individual external auditors and external technical experts
7.4 Personnel records
7.5 Outsourcing
8 Information requirements
8.1 Public information
8.2 \u200bCertification documents
8.2.1 General <\/td>\n<\/tr>\n
18<\/td>\n8.2.2 ISMS Certification documents
8.2.3 Reference of other standards in the ISMS certification documents
8.3 Reference to certification and use of marks
8.4 Confidentiality
8.4.1 General
8.4.2 Access to organizational records
8.5 Information exchange between a certification body and its clients <\/td>\n<\/tr>\n
19<\/td>\n9 Process requirements
9.1 Pre-certification activities
9.1.1 Application
9.1.2 Application review
9.1.3 Audit programme <\/td>\n<\/tr>\n
20<\/td>\n9.1.4 Determining audit time <\/td>\n<\/tr>\n
21<\/td>\n9.1.5 Multi-site sampling <\/td>\n<\/tr>\n
22<\/td>\n9.1.6 Multiple management systems
9.2 \u200bPlanning audits
9.2.1 Determining audit objectives, scope and criteria
9.2.2 Audit team selection and assignments <\/td>\n<\/tr>\n
23<\/td>\n9.2.3 Audit plan
9.3 Initial certification
9.3.1 General
9.3.2 Initial certification audit <\/td>\n<\/tr>\n
24<\/td>\n9.4 Conducting audits
9.4.1 General
9.4.2 Specific elements of the ISMS audit
9.4.3 Audit report <\/td>\n<\/tr>\n
25<\/td>\n9.5 \u200bCertification decision
9.5.1 General
9.5.2 \u200bCertification decision
9.6 Maintaining certification
9.6.1 General
9.6.2 Surveillance activities <\/td>\n<\/tr>\n
26<\/td>\n9.6.3 Re-certification
9.6.4 Special audits
9.6.5 Suspending, withdrawing or reducing the scope of certification <\/td>\n<\/tr>\n
27<\/td>\n9.7 Appeals
9.8 Complaints
9.8.1 General
9.8.2 Complaints
9.9 Client records
10 \u200bManagement system requirements for certification bodies
10.1 Options
10.1.1 General
10.1.2 ISMS implementation
10.2 Option A: General management system requirements
10.3 Option B: Management system requirements in accordance with ISO 9001 <\/td>\n<\/tr>\n
28<\/td>\nAnnex A (normative) Knowledge and skills for ISMS auditing and certification <\/td>\n<\/tr>\n
29<\/td>\nAnnex B (informative) Further competence considerations <\/td>\n<\/tr>\n
31<\/td>\nAnnex C (normative) Audit time <\/td>\n<\/tr>\n
37<\/td>\nAnnex D (informative) Methods for audit time calculations <\/td>\n<\/tr>\n
41<\/td>\nAnnex E (informative) Guidance for review of implemented ISO\/IEC 27001:2022, Annex A controls <\/td>\n<\/tr>\n
55<\/td>\nBibliography <\/td>\n<\/tr>\n<\/table>\n","protected":false},"excerpt":{"rendered":"

Information security, cybersecurity and privacy protection. Requirements for bodies providing audit and certification of information security management systems – General<\/b><\/p>\n\n\n\n\n
Published By<\/td>\nPublication Date<\/td>\nNumber of Pages<\/td>\n<\/tr>\n
BSI<\/b><\/a><\/td>\n2024<\/td>\n56<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n","protected":false},"featured_media":453678,"template":"","meta":{"rank_math_lock_modified_date":false,"ep_exclude_from_search":false},"product_cat":[96,2641],"product_tag":[],"class_list":{"0":"post-453669","1":"product","2":"type-product","3":"status-publish","4":"has-post-thumbnail","6":"product_cat-03-120-20","7":"product_cat-bsi","9":"first","10":"instock","11":"sold-individually","12":"shipping-taxable","13":"purchasable","14":"product-type-simple"},"_links":{"self":[{"href":"https:\/\/pdfstandards.shop\/wp-json\/wp\/v2\/product\/453669","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/pdfstandards.shop\/wp-json\/wp\/v2\/product"}],"about":[{"href":"https:\/\/pdfstandards.shop\/wp-json\/wp\/v2\/types\/product"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/pdfstandards.shop\/wp-json\/wp\/v2\/media\/453678"}],"wp:attachment":[{"href":"https:\/\/pdfstandards.shop\/wp-json\/wp\/v2\/media?parent=453669"}],"wp:term":[{"taxonomy":"product_cat","embeddable":true,"href":"https:\/\/pdfstandards.shop\/wp-json\/wp\/v2\/product_cat?post=453669"},{"taxonomy":"product_tag","embeddable":true,"href":"https:\/\/pdfstandards.shop\/wp-json\/wp\/v2\/product_tag?post=453669"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}