GLOSSARY / Compliance & Risk
ISO 27001
An international standard for information security management systems, used to demonstrate that security risk is being identified and managed systematically, not ad hoc.
west
Back to Glossary
Definition
security
ISO 27001 is an international standard specifying the requirements for an information security management system (ISMS), a structured, ongoing process for identifying, assessing, and treating information security risks. Certification doesn't guarantee a particular AWS configuration; it demonstrates that risk is being managed through a documented, auditable process, which is often a prerequisite for enterprise procurement and public sector contracts regardless of the specific cloud provider involved.