GLOSSARY / Compliance & Risk

ISO 27001

An international standard for information security management systems, used to demonstrate that security risk is being identified and managed systematically, not ad hoc.

west Back to Glossary

Definition

security

ISO 27001 is an international standard specifying the requirements for an information security management system (ISMS), a structured, ongoing process for identifying, assessing, and treating information security risks. Certification doesn't guarantee a particular AWS configuration; it demonstrates that risk is being managed through a documented, auditable process, which is often a prerequisite for enterprise procurement and public sector contracts regardless of the specific cloud provider involved.