Skip to main content
Back

EVS-EN ISO/IEC 27701:2025

Information security, cybersecurity and privacy protection - Privacy information management systems - Requirements and guidance (ISO/IEC 27701:2025)

General information

Valid from 15.12.2025
Base Documents
ISO/IEC 27701:2025; EN ISO/IEC 27701:2025
Directives or regulations
None

Standard history

Status
Date
Type
Name
15.12.2025
Main
03.05.2021
Main

ISO/IEC 27701 specifies requirements for establishing, implementing, maintaining and continually improving a privacy information management system (PIMS). Guidance is also provided to assist in the implementation of the requirements in this document.

Almost every organisation processes personally identifiable information (PII). Further, the quantity and types of PII processed are increasing, as are the number of situations where an organisation needs to cooperate with other organisations regarding the processing of PII. Protection of privacy in the context of the processing of PII is a societal need, as well as the topic of dedicated legal requirements worldwide.

ISO/IEC 27701 is intended for personally identifiable information (PII) controllers and PII processors holding responsibility and accountability for PII processing. It applies to all types and sizes of organisations, including public and private companies, government entities and not-for-profit organisations.

ISO/IEC 27701:2025 text has been approved in Europe as EN ISO/IEC 27701:2025 without any changes.

Required fields are indicated with *

*
*
*
PDF
32.24 € incl tax
Paper
32.24 € incl tax
Browse standard from 2.48 € incl tax
Standard monitoring

Customers who bought this item also bought

Main

EVS-ISO 55001:2025

Asset management — Asset management system — Requirements (ISO 55001:2024, identical)
Newest version Valid from 15.12.2025
Main

EVS-EN ISO/IEC 27002:2022

Information security, cybersecurity and privacy protection - Information security controls (ISO/IEC 27002:2022)
Newest version Valid from 01.12.2022
Main + amendment

EVS-EN IEC 61784-3:2021+A1:2024

Industrial communication networks - Profiles - Part 3: Functional safety fieldbuses - General rules and profile definitions (IEC 61784-3:2021 + IEC 61784-3:2021/AMD1:2024)
Newest version Valid from 17.06.2024
Main

EVS-ISO/IEC 38500:2024

Information technology Governance of IT for the organization (ISO/IEC 38500:2024, identical)
Newest version Valid from 15.11.2024