ISO/IEC 27701 is an extension to ISOIIEC 27001, the information security management system (ISMS) standard, and ISOllEe 27002,
which covers the code of practice for information security controls.
The world’s first Privacy Information Management System (PIMS) standard, ISOllEe 27701 provides requirements and guidance for
compliance with data protection laws, such as the EU’s General Data Protection Regulation (GDPR). The standard helps organisations
to implement and continually improve a PIMS, as well as providing guidance for Personally Identifiable Information (PII) controllers
and PII processors.