ISO/IEC 27000:2014, Information technology – Security techniques – Information security management systems – Overview and vocabulary (ed. 3.0, 取代 ISO/IEC 27000:2012 ed. 2.0,取代ISO/IEC 27000:2005 ed. 1.0)
ISO/IEC 27001:2013, Information technology – Security techniques – Information security management systems – Requirements (ed. 2.0, 取代 ISO/IEC 27001:2005 ed. 1.0)
ISO/IEC 27002:2013, Information technology – Security techniques – Code of practice for information security controls (ed. 2.0, 取代 ISO/IEC 27002:2005 ed. 1.0)
ISO/IEC 27003:2010, Information technology – Security techniques – Information security management system implementation guidance (ed. 1.0)
ISO/IEC 27004:2009, Information technology – Security techniques – Information security management – Measurement (ed. 1.0)
ISO/IEC 27005:2011, Information technology – Security techniques – Information security risk management (ed. 2.0, 取代 ISO/IEC 27005:2008 ed. 1.0)
ISO/IEC 27006:2011, Information technology – Security techniques – Requirements for bodies providing audit and certification of information security management systems (ed. 2.0, 取代 ISO/IEC 27006:2007)
ISO/IEC 27007:2011, Information technology – Security techniques – Guideances for information security management systems auditing (ed. 1.0)
ISO/IEC TR 27008:2011, Information technology – Security techniques – Guidelines for auditors on information security controls (ed. 1.0)
ISO/IEC WD 27009:2014, The Use and Application of ISO/IEC 27001 for Sector/Service-Specific Third-Party Accredited Certification
ISO/IEC 27010:2012, Information technology – Security techniques – Information security management for inter-sector and inter-organizational communications (ed. 1.0)
ISO/IEC 27011:2008, Information technology – Security techniques – Information security management guidelines for telecommunications organizations based on ISO/IEC 27002 (ed. 1.0)
ISO/IEC 2012, (proposed for eGovernment services but was canceled)
ISO/IEC 27013:2012, Information technology – Security techniques – Guidance on the integrated implementation of ISO/IEC 27001 and ISO/IEC 20000-1 (ed. 1.0)
ISO/IEC 27014:2013, Information technology – Security techniques – Governance of information security (ed. 1.0)
ISO/IEC TR 27015:2012, Information technology – Security techniques – Information security management guidelines for financial services (ed. 1.0)
ISO/IEC TR 27016:2014, Information technology - Security techniques - Information security management - Organizational ecomomics (ed. 1.0)
ISO/IEC 27017 (draft), Information technology - Security techniques - Guidelines on information security controls for the use of cloud computing services based on ISO/IEC 27002
ISO/IEC 27018 (draft), Information technology - Security techniques - Code of practice for PII protection in public cloud acting as PII processors
ISO/IEC TR 27019:2013, Information technology - Security techniques - Information security management guidelines based on ISO/IEC 27002 for process controls specific to the energy industry) (ed. 1.0)
ISO/IEC 27021 (nwip), Information technology - Security techniques - Specification for competence of information security management professionals
ISO/IEC 27031:2011, Information technology - Security techniques - Guidelines for information and communications technology readiness for business continuity
ISO/IEC 27032:2013, Information technology - Security techniques - Guidelines for cybersecurity
ISO/IEC 27033:2009, Information technology - Security techniques - Network security
ISO/IEC 27034:2011, Information technology - Security techniques - Application security
ISO/IEC 27035:2011, Information technology - Secuirity techniques - Information security incident management
ISO/IEC 27036:2013, IT Security - Security techniques - Information security for supplier relationships
ISO/IEC 27037:2012, Information technology - Security techniques - Guidelines for identification, collection, acquisition, and preservation of digital evidence
ISO/IEC 27038:2014, Information technology - Security techniques - Sepcification for digital redaction
ISO/IEC 27039 (draft), Information technology - Security techniques - Selection, deployment and operation of intrution detection and prevention systems (IDPS)
ISO/IEC 27041 (draft), Information techhnology -Security techniques - Guidelines for ance on assuring suitability and adequacy of incident investigative methods
ISO/IEC 27042 (draft), Information technology - Security techniques - Guidelines for the analysis and interpretation of digital evidence
ISO/IEC 27043 (draft), Information technology - Security techniques - Incident investigation principles and processes
ISO/IEC 27044 (draft), Information technology - Security techniques - Guideline for security information and event management (SIEM)
CNS 27002:2007,資訊技術 - 安全技術 - 資訊安全管理之作業規範 (Information technology - Security techniques - Code of practice for information security management)(等同ISO/IEC 27002:)
CNS 270032013:,資訊技術 - 安全技術 - 資訊安全管理系統實作指引(Information technology - Security techniques - Information security management system implementtion guidance) (等同ISO/IEC 27003:2010)