ISO/IEC 27006:2007 PDF
Information technology — Security techniques — Requirements for bodies providing audit and certification of information security management systems
Information technology — Security techniques — Requirements for bodies providing audit and certification of information security management systems
- Document status:
- Withdrawn
- Format:
- Electronic (PDF)
- Number of pages:
- 41
- Publication date:
- February 13, 2007
- Edition:
- ISO/IEC IS 27006 edition 1 version 1
- ICS:
- 03.100.70
ISO/IEC 27006:2007 specifies requirements and provides guidance for bodies providing audit and certification of an information security management system (ISMS), in addition to the requirements contained within ISO/IEC 17021 and ISO/IEC 27001. It is primarily intended to support the accreditation of certification bodies providing ISMS certification. The requirements contained in ISO/IEC 27006:2007 need to be demonstrated in terms of competence and reliability by any body providing ISMS certification, and the guidance contained in ISO/IEC 27006:2007 provides additional interpretation of these requirements for any body providing ISMS certification.
Technical details
- Technical committee
- ISO/IEC JTC 1/SC 27 - Information security, cybersecurity and privacy protection
- SKU
- ISO/IEC 27006:2007


