Skip
NORMITIC
ISO/IEC 27701

Privacy Information Management System

Built on top of ISO 27001 — the standard that demonstrates KVKK and GDPR alignment in an auditable form.

WHO IT'S FOR

Any organisation processing personal data — particularly finance, healthcare, e-commerce and SaaS.

WHY NORMITIC?
  • Independent, impartial ISO/IEC 27701 assessment
  • Audit teams with 25+ years of management-system practice behind them
  • We only audit — we do not sell consulting to the organisations we assess
  • A written quote within 24 hours, and an audit plan you see before we start
FREQUENTLY ASKED
What is ISO/IEC 27701?
Built on top of ISO 27001 — the standard that demonstrates KVKK and GDPR alignment in an auditable form.
How long does ISO/IEC 27701 certification take?
It depends on your scope, sites and organisation size. After your application, Normitic issues a quote within 24 hours and plans the Stage 1 (documentation) and Stage 2 (on-site) audits with you.
How long is the ISO/IEC 27701 certificate valid?
Three years, subject to annual surveillance audits. A recertification audit renews the cycle at the end of year three.
How does Normitic run a ISO/IEC 27701 audit?
We audit against the published requirements of ISO/IEC 27701. The audit team is assigned on competence for your sector, and the certificate decision is made by someone independent of that team.
Response within 24h

Ready whenyou are.

A free 20-minute discovery call to map your current state, goals and certification roadmap.