The Iso 27001 Standard is an information security management system standard by the International Standard Organization and the International Electro-technical Commission. Organizations may be certified compliant with ISO/IEC 27000 by many organizations worldwide. The ISO 27001 certification usually involves a two-stage audit process. Stage 1 involves a table-top review of the existence and completeness of key documentation, statement of applicability and risk treatment plan. Stage 2 involves a detailed and in-depth audit involving testing the effectiveness and existence of the information security controls stated in the SoA and RTP as well as their supporting documentation.