ISO 27701 certification at DEKRA.
DEKRA Audit Netherlands

Is your organization in control of privacy when processing (personal) data?

ISO 27701 Certification

Comprehensive privacy management system for more security

Since the introduction of the GDPR (General Data Protection Regulation), the topic of data protection has become increasingly important for many companies.

Under the circumstances, it makes good sense to introduce an appropriate data protection management system. With an ISO 27701 certificate, your organization demonstrates control over privacy in the processing of (personal) data.

About ISO 27701 certification

ISO 27701 supplements ISO 27001, outlining further requirements for enhanced information security. Certification is achieved in accordance with ISO 27001 and extended to fulfill ISO 27701 stipulations. In both cases, management systems and requirements take center stage. ISO 27701 also contains supplements to ISO 27002, the implementation guidelines for the measures in Appendix A of ISO 27001.

Features of ISO 27701 include:

  • Data protection measures
  • Appointment of a person responsible for the privacy information management system (PIMS)
  • Data protection training for employees
  • Access and modification log
  • Encryption of special categories of personal data (e.g. health data)
  • Consideration of the "Privacy by Design" principle
  • Review of security incidents for data breaches
ISO 27701 includes rules for data protection in the processing of personal data as well as data protection management i.e. contextual analysis, risk assessment and review of the company's control environment.

ISO 27701 in 6 steps:

1. Request a Quote
To serve you, please request a quote first. You can do this at the bottom of this page.
2. Baseline Assessment
At DEKRA, we offer a free baseline assessment. We do this so you know what still needs to be done before the first audit takes place.
3. Certification audit
On-site review to evaluate the implementation and effectiveness of the information security management system (ISMS) and the privacy information management system (PIMS).
4. Certificate
After successful completion, companies receive a certificate and the DEKRA test seal.
5. First and second surveillance audit
A surveillance audit is carried out annually to ensure continued practical implementation.
6. Recertification
Recertification before expiration of the three-year validity period.
Why DEKRA?

RvA accredited

DEKRA has been accredited by the RvA (Council for Accreditation) to test and certify ISO 27701. This accreditation confirms the reliability of our services, as well as the competencies of our qualified personnel.

Book a free session with our expert

Do you want to know how a DEKRA audit can elevate your organization to a higher level? We are happy to assist you further! Fill out the form below to get in touch with an ISO 27701 expert. Discuss the process together during a free session and ask all your questions about the audit.