ISO 27001 and ISO 27701 and the GDPR — How Information Security Standards Support Data Protection Compliance

An increasing number of organisations ask themselves: will implementing an information security management system (ISO 27001) or a privacy information management system (ISO 27701) help them achieve GDPR compliance? The answer is yes — but with important caveats. ISO 27001 and ISO 27701 are international standards that provide a framework approach to managing information security […]