Skip to main content
Back

EVS-EN ISO/IEC 27701:2025

Information security, cybersecurity and privacy protection - Privacy information management systems - Requirements and guidance (ISO/IEC 27701:2025)

General information

Valid from 15.12.2025
Base Documents
ISO/IEC 27701:2025; EN ISO/IEC 27701:2025
Directives or regulations
None

Standard history

Status
Date
Type
Name

ISO/IEC 27701 specifies requirements for establishing, implementing, maintaining and continually improving a privacy information management system (PIMS). Guidance is also provided to assist in the implementation of the requirements in this document.

Almost every organisation processes personally identifiable information (PII). Further, the quantity and types of PII processed are increasing, as are the number of situations where an organisation needs to cooperate with other organisations regarding the processing of PII. Protection of privacy in the context of the processing of PII is a societal need, as well as the topic of dedicated legal requirements worldwide.

ISO/IEC 27701 is intended for personally identifiable information (PII) controllers and PII processors holding responsibility and accountability for PII processing. It applies to all types and sizes of organisations, including public and private companies, government entities and not-for-profit organisations.

ISO/IEC 27701:2025 text has been approved in Europe as EN ISO/IEC 27701:2025 without any changes.

Required fields are indicated with *

*
*
*
PDF
32.24 € incl tax
Paper
32.24 € incl tax
Browse standard from 2.48 € incl tax
Standard monitoring

Customers who bought this item also bought

Main

EVS-EN ISO/IEC 27005:2024

Information security, cybersecurity and privacy protection - Guidance on managing information security risks (ISO/IEC 27005:2022)
Newest version Valid from 01.10.2024
Main + amendment

EVS-EN ISO/IEC 27001:2023+A1:2024

Information security, cybersecurity and privacy protection - Information security management systems - Requirements (ISO/IEC 27001:2022 + ISO/IEC 27001:2022/Amd 1:2024)
Newest version Valid from 16.12.2024
Main

EVS-EN ISO/IEC 27007:2022

Information security, cybersecurity and privacy protection - Guidelines for information security management systems auditing (ISO/IEC 27007:2020)
Newest version Valid from 01.02.2022
Main

EVS-ISO/IEC 27003:2021

Information technology - Security techniques -- Information security management systems -- Guidance (ISO/IEC 27003:2017, identical)
Newest version Valid from 03.05.2021