From the course: ISO 27001:2022-Compliant Cybersecurity: Getting Started

Unlock the full course today

Join today to access over 23,200 courses taught by industry experts.

ISO 27001 gaps and criticisms

ISO 27001 gaps and criticisms

- Even though ISO 27001 is a popular and well-accepted security standard, it's not perfect. Over the years, it has had a number of criticisms, and there are some important gaps you should know about. One of the most common criticisms of ISO 27001 is the misconception that being compliant means your organization is perfectly secure. Even if your organization is ISO 27001-certified, it can still have significant security incidents. This can be confusing to leaders in your organization who might react to a security incident by saying, "But I thought we were ISO 27001-certified. How could this happen?" It's helpful to raise people's awareness that ISO 27001 compliance means you follow a management framework for implementing and maintaining security, but it doesn't mean you won't have security incidents. Another criticism of ISO 27001 is that organizations may go through the motions to achieve compliance or even certification,…

Contents