Skip to main content

certification

ISO/IEC 27001 evidence across 0 vendors

ISO/IEC 27001 certificates are issued by accredited certification bodies on a three-year cycle with annual surveillance audits. There is no crawlable public registry, so most rows begin as vendor-stated with a certificate number and upgrade to Verified through certification-body registers and the IAF CertSearch API.

Verified rows
0
Vendor-stated
26
Expired
0
Last verified
17 Sep 2026

No vendor carries registry or auditor verified ISO 27001 evidence yet.

The 2013 edition is lapsed

IAF MD 26:2023 set 31 October 2025 as the deadline for the transition to ISO/IEC 27001:2022. Any certificate still citing the 2013 edition is treated as lapsed regardless of its printed expiry.

Scope statements matter

A certificate covers the scope written on it. Check that the product you are buying is inside the certified scope and that the sites listed include where your data is processed.