ISO/IEC 27007:2020
What is ISO/IEC 27007:2020?
ISO/IEC 27007 provides guidance on managing an ISMS audit programme, conducting audits, and evaluating the competence of ISMS auditors. It supplements ISO 19011 with ISMS-specific auditing guidance for both internal and external audits. It comprises 28 controls organised across 12 domains, published by ISO/IEC, and applies in International.
How ISO/IEC 27007:2020 maps to other frameworks
All 28 controls, each one mapped to the equivalent requirement in other standards, with the evidence that carries across and the mappings that were judged and rejected shown alongside. No account needed to look.
See the control mappings →The 12 domains ISO/IEC 27007:2020 groups its controls into
Where ISO/IEC 27007:2020 overlaps with the standards you already hold
What ISO/IEC 27007:2020 means in your sector
What ISO/IEC 27007:2020 means for your job
Questions people ask about ISO/IEC 27007:2020
What is ISO/IEC 27007:2020?
How many controls does ISO/IEC 27007:2020 have?
Where does ISO/IEC 27007:2020 apply?
What frameworks does ISO/IEC 27007:2020 map to?
How do I get started with ISO/IEC 27007:2020 compliance?
Query ISO/IEC 27007:2020 programmatically
ISO/IEC 27007:2020, its 28 controls and every mapping into other standards are available over a REST endpoint and an MCP server, so an agent can read them directly. The free tier is 10 calls a day and needs no signup.
ISO/IEC 27007:2020 API reference and MCP config →How ready are you for ISO/IEC 27007:2020?
Answer 25 questions and get a professional readiness report with gap analysis, maturity scores, and prioritised action items. Results in 5 minutes.