The ISO/IEC 27006-1 standard specifies additional requirements for organizations that audit and certify information security management systems (ISMS) in accordance with ISO/IEC 27001. It complements ISO/IEC 17021-1 by adapting the rules to the specific context of ISMS certification and ensures that certificates are issued competently, consistently, and impartially. The ISO 27006 standard has been revised and was published as ISO/IEC 27006-1:2024 on March 1, 2024. The International Accreditation Forum (IAF) has defined the necessary requirements for the transition to this standard in the document IAF MD 29:2024 (https://iaf.nu/iaf_system/uploads/documents/IAF_MD_29_27006-1_Transition_21052024.pdf).



The new standard includes numerous changes, including modifications to audit durations, and PIAQ Global has updated its system accordingly. Our clients holding ISO 27001 certificates will be contacted via email and phone regarding the updates they need to implement due to the standard revision.


The timeline that PIAQ and its clients must follow according to ISO/IEC 27006-1:2024 is as follows:

DateActivity
01.03.2024Publication of the ISO/IEC 27006-1:2024 standard
01.01.2025Commencement of audits in accordance with ISO/IEC 27006-1:2024
31.03.2026Deadline for transition