ISO 27001 is an international standard for information security management systems (ISMS).
What gets certified. A management system with a defined scope — not a single product.
A distinction that matters. “Certified” means a passed external audit; “aligned with” means no external verification.
Related evidence. SOC 2, TISAX, penetration test reports.
