<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>ISO/IEC 27001 news from Infosec Standards</title>
    <link>https://infosecstandards.org/standards/iso-27001</link>
    <description>News about ISO/IEC 27001, including major updates to our page on it.</description>
    <language>en-us</language>
    <atom:link href="https://infosecstandards.org/standards/iso-27001/feed.xml" rel="self" type="application/rss+xml"/>
    <item>
      <title>ISO/IEC 27017 second edition updates cloud security controls</title>
      <link>https://infosecstandards.org/news/iso-27017-second-edition</link>
      <guid>https://infosecstandards.org/news/iso-27017-second-edition</guid>
      <pubDate>Sat, 08 Aug 2026 00:00:00 GMT</pubDate>
      <description>ISO and IEC published ISO/IEC 27017:2026, the second edition of the cloud security controls guidance based on ISO/IEC 27002:2022. The 2015 edition is withdrawn.</description>
    </item>
    <item>
      <title>ISO/IEC 27001:2013 certificates expired on October 31, 2025</title>
      <link>https://infosecstandards.org/news/iso-27001-2013-certificates-expired</link>
      <guid>https://infosecstandards.org/news/iso-27001-2013-certificates-expired</guid>
      <pubDate>Fri, 31 Oct 2025 00:00:00 GMT</pubDate>
      <description>On October 31, 2025, the three-year transition to ISO/IEC 27001:2022 closed. Every certificate still issued against the 2013 edition expired or was withdrawn, and new certification is only available to the 2022 edition.</description>
    </item>
  </channel>
</rss>
