FAQ
Frequently Asked Questions about ISO 27001 Certification
ISO/IEC 27001 is the international standard for information security management systems (ISMS). Here we clarify the most common questions about the process, the statement of applicability and validity.
What is certified under ISO 27001?
What is certified is your information security management system. The systematic management of risks to the confidentiality, integrity and availability of your information. The basis is a risk-based approach with appropriate controls.
What role does the Statement of Applicability (SoA) play?
The Statement of Applicability documents which of the controls from Annex A are relevant to you and how they are implemented. It is a central audit document.
How does the certification audit work?
Our activities are strictly limited to certification services: planning and conducting certification audits to assess conformity of the information security management system with the requirements of ISO 27001, certification decision based on the audit results, issuance and maintenance of ISO 27001 certificates, and conducting surveillance and recertification audits in accordance with applicable rules and defined time intervals.
What determines the cost?
For the preparation of a binding quotation we provide a Service Request Form. Upon receipt of the completed documentation, an individual quotation will be prepared based on the information provided.
Does intellcert consult us on building the ISMS?
No. Our activities are strictly limited to certification services. Consulting or support services related to the development, implementation, or improvement of management systems are not part of our activities as a certification body.
intellcert is your competent partner for certification, inspection, testing, and training.
We look forward to your request for a free personal meeting.

