ISO 27001 Glossary of Terms

This ISO 27001 Glossary provides clear, concise definitions for all key terms in the ISO 27001 standard. An essential resource for professionals, students, or anyone navigating the world of information security, this guide will help you understand the standard and its requirements. It includes every term from access control to vulnerability, serving as a valuable reference.

Table of contents

A

Access control

Antivirus

Audit

Audit Scope

Auditor

Authentication

Availability

B

Backup

Backdoor

Base measure

Baseline

Benchmark

Behavioural controls

Board of Directors

Boundary

Breach

BS 7799

Business Continuity

Business Continuity Plan (BCP)

Business Management System (BMS)

Business context

Business Impact Analysis (BIA)

C

Change Management

Continual improvement

Confidentiality, Integrity, and Availability

CIA Triad

D

Defence in depth

Disaster Recovery (DR)

I

Information Security Management System

Information Security Officer

Internal Issues

Interested Parties

ISO 27001:2013

ISO 27001:2022

ISO 27002:2022

Internal Audit

E

External Issues

P

Protection of Systems During Audit Testing

S

Scope

Scope Statement

T

Test Information