NA 043

DIN Standards Committee Information Technology and IT Applications

Project

Information security, cybersecurity and privacy protection - Guidelines for information security management systems auditing

Abstract

This document provides guidance on managing an information security management system (ISMS) audit programme, on conducting audits, and on the competence of ISMS auditors, in addition to the guidance contained in ISO 19011. This document is applicable to those needing to understand or conduct internal or external audits of an ISMS or to manage an ISMS audit programme.

Begin

2025-07-11

WI

JT013094

Planned document number

DIN EN ISO/IEC 27007

Project number

04301227

Responsible national committee

NA 043-04-13 GA - DIN/DKE Joint working committee Cybersecurity  

Responsible european committee

CEN/CLC/JTC 13 - Cybersecurity and Data Protection  

Responsible international committee

ISO/IEC JTC 1/SC 27/WG 1 - Information security management systems  

Contact

Martin Uhlherr

Am DIN-Platz, Burggrafenstr. 6
10787 Berlin

Tel.: +49 30 2601-2591
Fax: +49 30 2601-42591

Send message to contact