Why ISO 27001?

Dec 21, 2023
If you work with confidential information, online or offline, you will need to consider obtaining ISO 27001 certification at some stage. Read on to find out which benefits an ISO 27001 certification would have for your organisation. 
ISO 27001 certification guide
Access the most important information and a checklist for your ISO 27001 certification with our ultimate guide.
Request download

How do I obtain ISO 27001 certification?

Are you having yourself certified by DEKRA for an ISO 27001 information security policy? Then you should assume it will be a six- to nine-month process, entailing the following steps:
Step 1: Introduction
We are happy to visit you, or contact you via Teams or by phone. During the meeting we will discuss the process of an ISO 27001 certification. After this you prepare your organization for the ISO 27001 audit.
Step 3: Report and evaluation
Our lead auditor shares the audit report. In it you will find all the results of the audit.
Step 2: Audit at your location
Our auditors perform an audit at your location. Here we assess and test the operation of the management system. We check whether it works as described in your organization's management system. Your organization must demonstrate that you are in control. If this cannot be demonstrated, it may be necessary to subsequently test the corrective measures.
Step 4: ISO 27001 certification
Upon successful completion, you will receive your ISO 27001 certificate. The certificate is valid for up to three years.
Step 5: First follow-up audit
Within a year, we conduct a follow-up audit. In this we assess whether your management system is still working according to the standard.
Step 6: Second follow-up audit
About a year later, we hold a second follow-up audit. We again assess whether your management system works according to the standard.
Step 7: Recertification
In the third year after ISO 27001 certification, we schedule an audit for recertification. In case the recertification is completed with a positive result, the certificate is renewed again for a period of three years. After recertification, the annual audit cycle follows.
You may also opt to begin with a trial audit prior to the actual certification process. We then assess and check the Information Security Management System (ISMS) documentation for completeness and conformity with the standards. This audit is not compulsory, but it is useful. It’s a good way of discovering just how your organisation is doing prior to the actual process. And you can still take action where needed. This increases your chances of a positive outcome for the real audit.
Get your ISO 27001 certification
If you would ike to know more about ISO 27001 certification or how to obtain it, see our website.
Read more

7 Results