Glossary term · N
ISO/IEC 27001 standard and ISMS certification
Definition
ISO/IEC 27001 is the international reference standard for Information Security Management Systems (ISMS). It defines the requirements for establishing, implementing, maintaining and continuously improving an ISMS, via 93 controls distributed across 4 domains (organizational, human, physical, technological). For an electronic signature service provider, ISO 27001 certification demonstrates a level of security maturity aligned with the obligations of eIDAS and GDPR. It is often required in public tenders and supplier security questionnaires from large enterprises. ISO 27017 standard (cloud security) and ISO 27018 (personal data protection in the cloud) complement ISO 27001 for SaaS services. Certyneo is hosted in ISO 27001 certified datacenters and maintains a documented ISMS covering the entire signature processing chain.
Related guides
Related terms
Ready to put these concepts into practice?
Certyneo allows you to create eIDAS-compliant signature envelopes in just a few clicks, with no installation required.