Phone: (011) 7541-421, 3409-301, 3409-335, 6547-293, 3409-310
E-mail: Standards sales: prodaja@iss.rs Education: iss-edukacija@iss.rs Information about standards: infocentar@iss.rs
Stevana Brakusa 2, 11030 Beograd
Main menu

dnaSRPS EN ISO/IEC 29151:2025

Information security, cybersecurity and privacy protection - Controls, requirements, and guidance for personally identifiable information protection (ISO/IEC FDIS 29151:2025)

General information

50.20     Nov 6, 2025

50.60    Jan 2, 2026

ISS

I224

European Norm

35.030  

English  

Scope

This document specifies controls, purpose, and guidance for implementing controls, to meet the requirements identified by a risk and impact assessment related to the protection of personally identifiable information (PII).
In particular, this document specifies requirements and guidance based on ISO/IEC 27002, taking into consideration the controls for processing PII that can be applicable within the context of an organization's information security risk environment(s).
This document is applicable to all types and sizes of organizations acting as PII controllers (as defined in ISO/IEC 29100), including public and private companies, government entities and not-for-profit organizations that process PII, in particular, organizations that do not establish or operate a privacy information management system.

Life cycle

PREVIOUSLY

PUBLISHED
SRPS EN ISO/IEC 29151:2022

NOW

PROJECT
dnaSRPS EN ISO/IEC 29151:2025
50.20 Proof sent to secretariat or FDIS ballot initiated: 8 weeks
Nov 6, 2025

Related project

Adopted from FprEN ISO/IEC 29151 IDENTICAL

Adopted from FprEN ISO/IEC 29151 IDENTICAL

Adopted from ISO/IEC FDIS 29151 IDENTICAL

Preview

To view the full content, you need to register or to log in to your account by clicking on the "Log in" button

Login