Skip to main content
Back

EVS-EN ISO/IEC 29151:2026

Information security, cybersecurity and privacy protection - Controls, requirements, and guidance for personally identifiable information protection (ISO/IEC 29151:2026)

General information

Valid from 17.08.2026
Base Documents
ISO/IEC 29151:2026; EN ISO/IEC 29151:2026
Directives or regulations
None

Standard history

Status
Date
Type
Name
This document specifies controls, purpose, and guidance for implementing controls, to meet the requirements identified by a risk and impact assessment related to the protection of personally identifiable information (PII).
In particular, this document specifies requirements and guidance based on ISO/IEC 27002, taking into consideration the controls for processing PII that can be applicable within the context of an organization's information security risk environment(s).
This document is applicable to all types and sizes of organizations acting as PII controllers (as defined in ISO/IEC 29100), including public and private companies, government entities and not-for-profit organizations that process PII, in particular, organizations that do not establish or operate a privacy information management system.

Required fields are indicated with *

*
*
*
PDF
32.24 € incl tax
Paper
32.24 € incl tax
Browse standard from 2.48 € incl tax
Standard monitoring

Customers who bought this item also bought

Main

EVS-EN ISO/IEC 27017:2026

Information security, cybersecurity and privacy protection - Information security controls based on ISO/IEC 27002 for cloud services (ISO/IEC 27017:2026)
Newest version Valid from 17.08.2026
Main

EVS-ISO/IEC 27033-2:2013

Information technology -- Security techniques -- Network security -- Part 2: Guidelines for the design and implementation of network security
Newest version Valid from 05.08.2013
Main

EVS-ISO/IEC 27033-3:2013

Information technology - Security techniques - Network security - Part 3: Reference networking scenarios - Threats, design techniques and control issues
Newest version Valid from 06.05.2013
Main

EVS-ISO/IEC 27035-2:2024

Information technology — Information security incident management — Part 2: Guidelines to plan and prepare for incident response (ISO/IEC 27035-2:2023, identical)
Newest version Valid from 15.08.2024