The new standard ISO 27001:2005 Information Security Management Systems (ISMS) certification was published on 14 October 2005. It replaces BS 7799:2002
Part 2.
Key changes between ISO 27001 and BS 7799
- A new security control clause, “Information security incident reporting”, has been added, bringing the total number of clauses to 11;
- There are now 39 security categories;
- New controls have also been added, with a new total of 133; and
- Additional changes include requiring organizations to define their risk assessment approach and provide justification for any exclusion from scope.
Request for correspondence
ISO 27001:2005 vs. BS 7799-2:2002 Comparison
For more information:
About ISO 27001:2005 Certification
View our Certified Clients
Already BS 7799 certified?
Register for "The PROOF" newsletter