ISO/IEC 27001 is a global standard developed by the International Organization for Standardization (ISO) and the International Electrotechnical Commission (IEC). It defines the requirements for establishing, implementing, maintaining, and continuously improving an Information Security Management System (ISMS).