ISO 27001 Internal Audit: A Practitioner’s Checklist
April 20, 2026
Internal audit is the clause of ISO 27001 that fails silently. Startups complete the Annex A controls, draft the policy library, run through Stage 1, pass Stage 2, frame the certificate. Then clause 9.2 comes due and nobody remembers what an internal audit looks like. Year two surveillance arrives, the auditor asks for the internal […]