This bulletin provides updated information regarding the requirements for transition of Certification Bodies offering ISMS certification under ISO/IEC 17021: 2011 from ISO/IEC 27001: 2005 to ISO/IEC 27001: 2013. The bulletin follows on from the letter sent to Certification Bodies on 7th October 2013.
Transition Requirements
IAF has issued a resolution with regard to the transition, this is worded as follows:
“The General Assembly, acting on the recommendation of the Technical Committee, resolved to endorse ISO/IEC 27001:2013 Information technology - Security techniques - Information security management systems – Requirements, as a normative document. The General Assembly further agreed that the deadline for conformance to ISO/IEC 27001:2013 will be two years from the date of publication. One year after publication of ISO/IEC 27001:2013, all new accredited certifications issued shall be to ISO/IEC 27001:2013.
Note: As the date of publication was 1 October 2013, the deadline for Certification Bodies to conform will be 1 October 2015.”