~/services/iso-27701Service
ISO/IEC 27701 (PIMS) readiness
A readiness assessment against ISO/IEC 27701:2025, the privacy information management standard. The 2025 revision is stand-alone, so a PIMS can now be certified with or without ISO/IEC 27001. We assess your PIMS, carry out the internal audit the standard itself requires of you, and prepare you for the certification body.
What this covers
- Full coverage of ISO/IEC 27701:2025: management system clauses 4 to 10 and all 78 Annex A privacy controls
- PIMS scope and your role for each processing activity, as PII controller, PII processor, or both
- Privacy risk assessment and the controls selected to treat what it finds
- Records of processing, purpose limitation, retention, and the rights of the people whose data you hold
- Transition from ISO/IEC 27701:2019, now that the standard is stand-alone rather than an extension of ISO/IEC 27001
- Alignment with GDPR, and with your existing ISMS where you already hold ISO/IEC 27001
- Every applicable privacy control is assessed, not a selected subset
What you receive
- PIMS scope review
- Privacy control gap assessment
- Records of processing review
- Readiness report
- Sign-off before your assessor
Scope your ISO/IEC 27701 (PIMS) readiness engagement.
A 30 minute scoping call, then a fixed price. No discovery questionnaire, no pressure to buy.