WHO IT'S FOR
Any organisation processing personal data — particularly finance, healthcare, e-commerce and SaaS.
WHY NORMITIC?
- Independent, impartial ISO/IEC 27701 assessment
- Audit teams with 25+ years of management-system practice behind them
- We only audit — we do not sell consulting to the organisations we assess
- A written quote within 24 hours, and an audit plan you see before we start
FREQUENTLY ASKED
- What is ISO/IEC 27701?
- Built on top of ISO 27001 — the standard that demonstrates KVKK and GDPR alignment in an auditable form.
- How long does ISO/IEC 27701 certification take?
- It depends on your scope, sites and organisation size. After your application, Normitic issues a quote within 24 hours and plans the Stage 1 (documentation) and Stage 2 (on-site) audits with you.
- How long is the ISO/IEC 27701 certificate valid?
- Three years, subject to annual surveillance audits. A recertification audit renews the cycle at the end of year three.
- How does Normitic run a ISO/IEC 27701 audit?
- We audit against the published requirements of ISO/IEC 27701. The audit team is assigned on competence for your sector, and the certificate decision is made by someone independent of that team.