ISO/IEC 27001: 20 years at the service of global cybersecurity

Facebook
Email
Twitter
LinkedIn
Agri-food expertise

For twenty years, the international standard ISO/IEC 27001 has been helping organizations worldwide to structure their information security management and strengthen their resilience in the face of cyber threats. Regularly updated, it has established itself as a benchmark tool in an environment marked by an ever-increasing number of regulations and the growing complexity of digital risks.

🌍 A voluntary, universal and recognized standard
Cybersecurity cannot rely on regulation alone. Alongside national or regional legal and regulatory frameworks, international voluntary standards play an essential role. Designed by and for market players, they offer a common language and proven practices. Among them, ISO/IEC 27001 is the essential management standard for information security. It provides information systems managers, as well as all relevant functions (quality, compliance, risk management), with a structured framework for :

  • Identify and analyze risks,
  • Define appropriate preventive measures,
  • React effectively to incidents,
  • Continuous improvement of safety devices.

🔒 A certifiable standard, a guarantee of confidence
Because it is a management system standard, ISO/IEC 27001 is certifiable. This means that organizations can demonstrate, through an independent audit, the robustness of their information security arrangements. This certification is a competitive advantage: it is increasingly required in international calls for tender, and helps to build trust with customers, partners and authorities. The number of certified organizations in all sectors is growing every year.

📈 C ontinuous evolution in the face of new challenges
Since its first publication in 2005, ISO/IEC 27001 has undergone several major revisions (2013, 2022) to incorporate technological developments, new threats and stakeholder expectations. In 2024, an amendment even introduced consideration of the impact of climate change on information security management systems (ISMS). This adaptability illustrates the enduring relevance of the standard and its role as a global reference.

🏭 Multi-sector adoption
Initially adopted by IT and cybersecurity players, ISO/IEC 27001 has spread widely to other sectors:

  • Banking and insurance,
  • Manufacturing industry,
  • Public services and administrations,
  • Health and research,
  • Energy and critical infrastructures.

This diversity testifies to the universal value of the standard in protecting data and reinforcing digital confidence.

📊Retour sur quelques chiffres clés issus de l'ISO Survey (2025)

  • Total number of ISO/IEC 27001 certificates worldwide: around 96,000 valid certificates in 2024, compared with 58,000 in 2021(+65% in 4 years).
  • Geographical distribution :
    • 🌏 Asia: over 40% of certificates (strong momentum in China, Japan, India).
    • 🌍 Europe: around 35% of certificates (led by the UK, Germany and Italy).
    • 🌎 Americas: close to 15% (growing United States, Brazil and Mexico).
  • Sectors most represented :
    • Information technology and digital services (≈ 50% of certificates),
    • Banking/insurance and financial services (≈ 7%),
    • Manufacturing industry (≈ 5%),
    • Health and biomedical research (fastest growth).

🎓 AFNOR International, a partner in your approach
As an international certification and training body, AFNOR International supports organizations of all sizes and sectors worldwide on their journey towards ISO/IEC 27001 certification. Our missions are to train your teams in the requirements and best practices of the standard, and toaudit your management systems in order to deliver a globally recognized certification. In celebrating the 20th anniversary ofISO/IEC 27001, AFNOR International is reaffirming its commitment to promoting robust cybersecurity practices that are adapted to global challenges and provide confidence for the world's digital economy.

Read more :

latest news
from the international network

Agri-food expertise
Taiwan 50001
Taiwan

Fengyi Electronics and Jingfeng Electronics Pass ISO 50001 Energy Management System Certification

"Fabao International Certification" announced that "Fengyi Electronics Co., Ltd." and its subsidiary "Jinfeng Electronics Co., Ltd." have successfully passed the ISO 50001:2018 international energy management system certification and obtained the certificate. This certification confirms that both companies have met international standard requirements in the establishment, implementation, and maintenance of their energy management systems. FAB International Certification is an internationally recognized third-party certification body. This certification was conducted in accordance with the ISO 50001 standard and involved a comprehensive assessment of the energy baseline establishment, performance indicators, management plans, and internal audit systems of Fengyi Electronics and Jingfeng Electronics. The certification process confirmed that the group has institutionalized its energy management system, which operates effectively and demonstrates a commitment to continuous improvement. To strengthen energy governance, Fengyi Electronics Group effectively monitors and analyzes energy usage through cross-company resource integration and its own energy monitoring and management system. The simultaneous completion of this certification demonstrates the electronics industry's concrete actions in systematically managing energy efficiency and implementing energy conservation and carbon reduction. FAB International Certification points out that ISO 50001 energy management system certification helps companies systematically improve energy efficiency. Fengyi Electronics Group's certification demonstrates the ability of Taiwanese companies to meet international standards in the areas of sustainable development and energy management. SGS International Certification has long provided various management system certification services to help enterprises strengthen their operational efficiency and environmental performance. In the future, it will continue to promote the implementation of sustainable goals in Taiwan's industries through professional certification.  

Read more "
Taiwan

Taiyo Technology has obtained AS9100 and ISO 27001 management system certifications through international standard certification.

"FAB International Certification" recently announced that Taiyo Technology Co., Ltd. has successfully passed the international certification for the AS9100:2016 aerospace quality management system and the ISO/IEC 27001:2022 information security management system. These two certifications confirm that the company's management systems meet international standards in the fields of aerospace quality control and information security protection. "FAB International Certification" recently announced that "Taiyo Technology Co., Ltd." has successfully passed the international certification of AS9100:2016 Aerospace Quality Management System and ISO/IEC 27001:2022 Information Security Management System. These two certifications confirm that the company's management systems in the fields of aerospace quality control and information security protection meet international standard requirements. As a third-party certification body, "FAB International Certification" conducted a comprehensive assessment of Taiyo Technology's quality management processes, product reliability control, information asset protection, and risk management mechanisms based on the AS9100 and ISO/IEC 27001 standards. The certification results show that the company has established a complete and effective integrated management system, demonstrating its commitment to quality and information security in the high-end manufacturing field. Taiyo Technology is a professional copper foil substrate manufacturer whose products are used in communications, servers, automotive electronics, and other fields. Building on its existing multiple management systems, the company's successful AS9100 and ISO 27001 certification demonstrates its continuous pursuit of excellence and strengthens its professional capabilities as a qualified supplier in the aerospace and defense supply chain. FAB International Certification pointed out that the company's simultaneous AS9100 and ISO 27001 certification demonstrates that its management system can meet the aerospace industry's stringent quality requirements and its high emphasis on supply chain information security. Taiyo Technology's establishment of an international standard management system showcases the competitiveness of Taiwan's manufacturing industry in the high-end market. "FAB International Certification" has long provided certification services in professional fields such as aerospace and information security, assisting enterprises in aligning with international industry standards. In the future, it will continue to promote the upgrading of Taiwan's industry and its integration into the international market through rigorous certification procedures.  

Read more "
Taiwan

Taiwan Railways Administration obtains carbon footprint label for passenger transport through international certification, marking a new milestone in green transportation

Driven by the goal of net-zero carbon emissions, Taiwan Railway Administration actively promotes carbon footprint assessment and information disclosure as an important step in sustainable transformation. After review and approval by the Ministry of the Environment, TRA officially obtained the right to use the passenger transport service carbon footprint label, becoming the first traditional railway transport service provider in Taiwan to obtain the carbon footprint label and setting a benchmark for green transport services in Taiwan. The Taiwan Railway Administration (TRA), formerly known as the Taiwan Railway Bureau under the Ministry of Transportation, was established in 1887 and has a history of more than 137 years. On January 1, 2024, it was restructured into the Taiwan Railway Administration.TRC shoulders the core mission of passenger and freight transportation for the entire Taiwan railway system, covering vehicle operation, infrastructure maintenance, station management, and customer service. It also cooperates with the government in continuously promoting railway modernization projects, making it a crucial transportation infrastructure in Taiwan. Faced with the global trend of net-zero emissions by 2050, the entire social environment and industrial development are undergoing structural changes. Driven by net-zero carbon emissions, Taiwan Railways is actively promoting carbon footprint assessment and information disclosure as an important step in sustainable transformation.Through the promotion of the "2025-2026 Carbon Footprint Assessment and Carbon Reduction Plan for Stations and Passenger Transport Vehicles," and with the completion of carbon footprint verification for the "Tze-Chiang," "Chu-Kuang," and"Local/Local Express" train types. After review and approval by the Ministry of the Environment, Taiwan Railways officially obtained the right to use the passenger transport service carbon footprint label, becoming the first traditional railway transport service operator in Taiwan to obtain the carbon footprint label and setting a benchmark for green transport services in Taiwan. At the carbon footprint label disclosure ceremony, the head of operations for the Asia-Pacific region of Bureau Veritas,During this process, AFNOR Certification followed international standards to conduct carbon footprint audits and data verification for TRA's Tze-Chiang, Ju-Guang, and local/express passenger transport services to ensure data accuracy and compliance. According to the audit results,the Tze-Chiang Express generates 36 grams of carbon dioxide equivalent (CO2e) per passenger-kilometer, the Chu-Kuang Express generates 50 grams of CO2e, and the Local/Local Express trains generate 55 grams of CO2e. Taiwan Railways Administration stated that it will continue to promote system-wide carbon management based on this verification data and combine it with measures such as vehicle replacement, energy efficiency improvements, and smart railways to move towards the goal of net-zero carbon emissions by 2050.The successful collaboration between Taiwan Railway and FSC not only demonstrates Taiwan Railway's firm commitment to sustainable operations, but also highlights FSC's professional capabilities in the field of carbon management verification. Both parties will continue to work together to realize the vision of a low-carbon society and sustainable development in Taiwan.

Read more "
Back to top