Protect the critical personally identifiable information (PII) of your organization and your customers with ISO 27018
Protect the critical personally identifiable information (PII) of your organization and your customers with ISO 27018
ISO/IEC 27018 (Information technology, security techniques, code of practice for protection of PII in public clouds) gives a framework for assessing how well an organization protects PII in public clouds. ISO/IEC 27018 guidelines help to protect your organization's highly sensitive or critical PII. It also includes provisions for confidentiality agreements with CSP/CSC staff for PII processing and training.
ISO/IEC 27018 serves as a code of practice for selecting PII protection controls within the process of implementing an ISO/IEC 27001-based ISMS in a cloud environment. While ISO/IEC 27001 safeguards an organization’s information assets, ISO/IEC 27018 helps CSPs to protect the highly sensitive or critical PII entrusted to them by their customers.
Earning your ISO 27018 certification provides your organization with several key benefits:
We provide complete ISMS and cloud PII security assessments, based on ISO/IEC 27001 and ISO/IEC 27018 guidelines. As TÜV SÜD is vendor agnostic, our assessments are both impartial and independent. We work with both major household-name CSPs as well as a wide variety of smaller cloud service providers and can adapt our processes to your needs and requirements.
Discover how these three standards differ
Learn More
Site Selector
Global
Americas
Asia
Europe
Middle East and Africa