Compliance auditISO/IEC 27006-1:2024

ISO/IEC 27006-1:2024 — ISMS certification bodies

Requirements for bodies providing audit and certification of information security management systems, ensuring competence, consistency and impartiality.

control points
42
anchored clauses
18
Clauses covered
6

Clauses covered

General requirements35.1 · 5.2.2 · 5.3
Structural requirements16
Resource and competence requirements47.1.2 · 7.1.3 · 7.2.2 · 7.3-7.5
Information and confidentiality38.3 · 8.4 · 8.1-8.2
Certification process69.1 · 9.2 · 9.5 · 9.6 · 9.3-9.4 · 9.7-9.9
Management system of the body110

Scale

CompliantOpportunity for improvementNon-compliantNot applicable

This template is used inside the platform: every finding becomes a corrective action tracked through to its evidence — something a printed grid cannot do.

Use this template

14-day trial, no credit card. The template opens in your workspace.

How this grid is built

Every control point is written in our own words, then tied to the standard's clause number. The normative text is never reproduced: the standard itself remains to be purchased from the body that publishes it. Grids are reviewed at every new edition of a standard.

Published by NormePulse — HEMC, management consulting firmUpdated

Related templates