
ISO 27001 certification - A solid base for information security
Receive a quote tailored to your needs
From 25 May 2018, the General Data Protection Regulation (GDPR) applies in all EU countries. The GDPR replaces the national privacy laws of the member states and ensures that the personal data of all EU residents is protected in the same way.
Privacy awareness
The GDPR revolves around more awareness of privacy. For example the GDPR prescribes risk analyses, processor agreements and, under certain circumstances, a data protection officer. By applying the GDPR, the EU is encouraging companies and institutions to deal more consciously and responsibly with privacy and personal data issues.
The ISO 27001 standard is used worldwide as a basis for information security. This standard contains requirements and guidelines for structuring information security, thus guaranteeing confidentiality, availability and integrity of information within an organisation.
ISO 27001 and GDPR
The standard ISO 27001 covers almost the entire spectrum of information security, however it’s depth is limited when it comes to privacy protection. An ISO 27001 certificate is therefore not sufficient to comply with the GDPR. Kiwa’s GDPR certification service incorporates detailed privacy protection, so meets that gap. Organisations that already comply with the GDPR can derive added value through an ISO 27001 certificate, because information security is more thoroughly covered.
More information?
Kiwa has an extended and diverse track record when it comes to ISO27001 certification. In our product portfolio you will find more information about ISO 27001 certification by Kiwa, about ISO 27001 certification costs, the ISO 27001 certificate and the ISO 27001 audit. Would you like to know more about ISO 27001 certification, about the difference between ISO 27001 and ISO 27002 or about other aspects of data security? Please complete the contact form and we will be in touch.
Prepare with a pre-audit/GAP analysis
Are you planning to certify your organization according to a specific standard but unsure where to start? Or have you already implemented a management system in line with, for example, ISO 9001, ISO 27001, or ISO 14001, but you're uncertain if it fully meets the certification requirements? Discover more about our pre-audit/GAP analysis.

ISO integrates climate change into management systems
The International Organization for Standardization (ISO) took a historic step on 23 February 2024, by incorporating climate change into a wide range of management system standards. This means that climate change is now a mandatory component of no less than 31 system standards, including ISO 9001, ISO 14001, ISO 27001, and ISO 50001. The changes took effect immediately upon publication.

‘ISO 27001 gives us that crucial edge over the competition’
Dutch start-up Nedscaper provides Managed Extended Detection and Response (MXDR) services from the cloud. With this, the young company fully relieves customers when it comes to detecting and limiting cyber risks. Nedscaper also supports organizations that want to organize their own cyber security and provides compliance services. Lead compliance consultant Steijn Scheutjens explains how Nedscaper deals with digital information and recently saw its efforts in this area awarded with an ISO 27001 certification.

IT assurance reporting increasingly popular, but what exactly is it?
The growing number of requirements for information and IT security instigates more and more organizations to demonstrate that they have done everything within reach to comply with applicable laws and regulations and that they work according to recognized quality and information security standards. In addition to certification in accordance with the ISO 27001 standard for information security, an increasing number of organizations is opting for IT assurance reports such as ISAE 3402 and SOC 2.

Bug Bounty Security Testing
Want to gain insight on the cybersecurity of your internet connected assets and applications? Kiwa and bug bounty security platform Intigriti proudly present their joint private bug bounty security testing service. This service makes it possible for you to organise (private) bug-bounty programs according to your specific preferences.

In control of sensitive information with Kiwa's GDPR certificate
Do you want to demonstrate that your business operations comply with the General Data Protection Regulation (GDPR)? With a GDPR audit by Kiwa and the resulting GDPR certificate, you can show that you are in control when it comes to protecting sensitive privacy information.

ISO 9001 Quality Management
ISO 9001 is the international standard for quality management systems. Kiwa has extensive experience with ISO 9001 certification. With auditors active in a wide range of industries, we have all the sector knowledge needed to make your certification process a success.

NEN 7510 certification: take care of your confidential information
Kiwa was the first in the Netherlands to have a NEN 7510 accreditation and has a great deal of experience with regard to the NEN 7510 certification. Look here for more info!

ISO 13485 Medical Devices
ISO 13485 is the medical device industry's quality management system (QMS) standard. The scheme specifies the requirements for a quality management system for medical devices.
