
ISO 27001
Information Security Management System
ISO 27001 is the internationally recognized global standard for Information Security Management Systems (ISMS). It provides a framework for organizations to manage and protect their information assets.
Get Started Today
Enter your details below to get started on your journey to certification.
Get Started
Get Your Certification Issued in 4 Easy Steps
Partnering with Perry Johnson Registrars (PJR) means a clear, supportive path from preparation to certification and beyond. Our process is designed to make achieving and maintaining ISO 9001 certification simple, efficient, and rewarding.
Application & Optional Pre-Assessment
Begin your certification journey by submitting an application and receiving a tailored proposal from PJR. Some clients may also request an optional pre-assessment or readiness review to evaluate preparedness before the official audit. This step helps identify potential gaps early, improving the likelihood of a successful certification.
ISO/IEC 27001
![]() |
Now Available: ISO/IEC 27001:2022
The latest revision of the ISO/IEC 27001 standard was released in October 2022. A PDF of the standard is available for purchase on the ISO website. Here is some Q&A on important points that you should know:
Q: What has changed?
A: Fortunately, most of the changes to the standard were related to its structure and layout. The majority of controls remained in place, with only minor alterations to Annex A. Other planned changes include subtle changes around wording: Identity and Authentication Management will replace “password management,” User End Point Devices will not be used instead of “Mobile Devices,” and Asset Management” will now include an inventory of information. Due to the emergence of new vulnerabilities and technologies since the release of the 2013 standard, new controls will also be added, and include the introduction of hashtags (#) next to each control, in order to help you understand what elements or functions the control perform within the ISMS. (#preventative, #detective, #corrective).
Q: What will I need to re-certify to the new version?
A: Existing client’s transition period lasts until October 31, 2025. During this transition period, you will be able to update your ISMS with new controls, implement changes, and record training activities as appropriate. PJR will conduct a recertification audit against the new standard and issue a new certificate.
Q: What if I am new to certification?
A: As of April 30, 2024, only audits to ISO/IEC 27001:2022 will be conducted.

Your Journey to ISO 27001 (video) Series
ISO/IEC 27001 is the international standard for Information Security Management Systems (ISMS). It provides a model for risk assessment, security design and implementation, and security management. The standard specifies implementation and management guidelines to help keep your information safe.
ISO/IEC 27001 is the only international auditable standard for Information Security Management Systems. It provides independent assurance that your organization complies with legal, statutory, regulatory, and contractual requirements bearing sensitive information. Obtaining an ISO/IEC 27001 certification proves that you have taken necessary steps to protect sensitive information against unauthorized access.
Who needs ISO/IEC 27001?
Any organization that holds sensitive information is a candidate for ISO/IEC 27001 certification. In particular, companies in the healthcare, finance, public, and IT sectors can benefit greatly from a certified ISMS.
More Information on ISO/IEC 27001:
- What is ISO/IEC 27001?
- Cyber Security for Electronic Medical Devices
- What is an Information Security Management System?
- How ISO/IEC 27001 Provides Cyber Security for the Banking Industry?
- How ISO 27001 Can Protect Medical Organizations from Cyber Threats
- Overview of Certification
For more information on ISO/IEC 27001, contact PJR today at (248) 358-3388 or send a request to pjr@pjr.com for a Project Manager in your area!
Why Choose PJR as Your Certification Partner
Our team of experts are with you every step of your certification journey.
- Fully accredited and globally recognized - PJR is accredited by leading bodies including ANAB, UKAS, JAB, and ACCREDIA, ensuring your certification is respected worldwide.
- Value-driven auditing approach - Our Process Performance Auditing (PPA) method goes beyond checklists, focusing on how your processes perform and drive continual improvement.
- Industry-experienced auditors - Our auditors understand your industry’s unique needs and provide meaningful insights that add real value.
- Personalized, human service - When you call PJR, you speak with real people…not automated systems. You will always have personalized service from our dedicated scheduling team, ensuring quick, reliability, and thoughtful support throughout your certification journey.
- Global reach with a local touch - Whether you are a small business or a multinational organization, PJR offers efficient, flexible service tailored to your size, scope, and location.

PJR Resources
Expertise for Every Industry
Here at Perry Johnson Registrars, we have the authority to grant certification to a wide range of international standards.
Please select a standard below to learn more, or browse all standards we certify.

Quality

Environmental & Energy

Aerospace

Cybersecurity

Automotive

Medical Devices

Food Safety

Supplier Audits
What Our Clients Say
PJR has been an accredited registrar since 1994; formal accreditation came in January 1995 by ANSI/ANAB.
Perry Johnson Registrars, Inc. has been accredited by seven different international bodies, is recognized by IAOB, and has an audit staff of over 500 auditors, averaging 15 years of auditing experience and 18 years of experience in the quality industry.
PJR auditors boast an average of 15 years of auditing experience and an average 18 years of experience in quality assurance. Auditors undergo a thorough qualifications process, which includes not only interviews, background checks, and references, but mandatory training modules, technical competency exams, observation and supervision audits, and annual auditor training.
Frequently Asked Questions
Have questions about ISO 27001 or our certification process? We’ve got answers.





