certification
ISO/IEC 27001 evidence across 0 vendors
ISO/IEC 27001 certificates are issued by accredited certification bodies on a three-year cycle with annual surveillance audits. There is no crawlable public registry, so most rows begin as vendor-stated with a certificate number and upgrade to Verified through certification-body registers and the IAF CertSearch API.
- Verified rows
- 0
- Vendor-stated
- 26
- Expired
- 0
- Last verified
- 17 Sep 2026
No vendor carries registry or auditor verified ISO 27001 evidence yet.
The 2013 edition is lapsed
IAF MD 26:2023 set 31 October 2025 as the deadline for the transition to ISO/IEC 27001:2022. Any certificate still citing the 2013 edition is treated as lapsed regardless of its printed expiry.
Scope statements matter
A certificate covers the scope written on it. Check that the product you are buying is inside the certified scope and that the sites listed include where your data is processed.
