LRQA Logo
Search :
LRQA Global Websites
Certification • Verification and Audit • Training 

Quicklinks

 

 

Privacy statement
Site accessibility
Website Terms of use

This website uses scripting, some parts of the site may not function correctly with scripting disabled

ISO 27001

ISO/IEC 27001 aims to ensure that adequate controls addressing confidentiality, integrity and availability of information are in place to safeguard the information of 'interested parties'. These include your customers, employees, trading partners and the needs of society in general.

Unprotected systems are vulnerable to computer-assisted fraud, sabotage and viruses. Breaches in information security can allow vital information to be accessed, stolen, corrupted or lost. How confident are you that you have the appropriate controls and procedures in place to avoid such incidents?

An information security management system compliant to ISO/IEC 27001, formerly known as BS7799 part 2 can help you demonstrate to trading partners and customers alike that you take information security seriously.

How can ISO/IEC 27001 benefit my organisation?

Our assessors are management systems experts with the experience and knowledge to give a thorough and objective audit of your information security management system. This will help give you increased confidence in your own security measures as judged against best industry practice.

Accredited certification to ISO/IEC 27001 is a powerful demonstration of an organisation’s commitment in managing information security and can offer the following key benefits:

How can we gain certification to ISO/IEC 27001?

LRQA provide a range of assessment, certification and training services to this standard.

Background to ISO/IEC 27001 / ISO/IEC 17799

Introduced by the DTI as BS 7799 in 1995 offering best practice guidance in information security management, the standard comes in two sections:

ISO/IEC 27001 is a third party assessable standard against which organisations can achieve certification. It was revised in 2005 and is based on the plan - do - check - act model in common with ISO 9001 and ISO 14001 and uses risk assessment and business impact analysis to identify and manage risks to the confidentiality, integrity and availability of information.

ISO/IEC 17799, also revised in 2005, provides implementation advice and guidance to support security objectives and controls selected to manage the risks identified by the ISO/IEC 27001 risk assessment process. It will be renumbered ISO/IEC 27002 in 2007.

 

Image of coloured boxes

LRQA 250 Yeears
A member of the Lloyd's Register Group ©LRQA 2010
Page last modified on 01 December 2007
Lloyd's Register Logo

My LRQA


Username

 

Password

   
  Remember Me

Not registered? Join here


Contact Us
Green Phone
Sales
0800 783 2179
Dark Blue Phone
Training
0800 328 6543
Blue Phone
Technical Enquiries
0800 9000 12
red phone
Customer Services
024 7688 2222
info Send Enquiry
Email
Email

 

Be kept informed of latest LRQA and industry news
. . . submit your details.