Directory

    ISO 27001 Auditors in Europe

    24 accredited ISO 27001 audit firms serving Europe on Nomona. ISO/IEC 27001 is the international standard for information security management. An accredited certification body audits your ISMS and issues a certificate. Typical timeline: Building and operating the ISMS before a first certification audit typically takes six to twelve months. Certification then runs on a three-year cycle: Stage 1 and Stage 2 audits up front, surveillance audits in years one and two, and recertification in year three.. Typical cost: Certification-body audit fees vary with organization size, number of sites, and scope, and are separate from the internal effort or consulting to build the ISMS. Larger, multi-site scopes cost materially more than a single-entity ISMS..

    PS

    Prescient Security

    Unverified Peer ReviewedUnclaimed account
    Nashville, United States
    SOC 2ISO 27001ISO 42001HIPAAGDPRPCI DSSCREST
    0.0(0)

    Security-first audits, built by pen testers.

    SaaSFintechGovernment
    AR

    Assent Risk Management

    UnverifiedUnclaimed account
    London, United Kingdom
    SOC 2ISO 27001GDPR
    0.0(0)
    Pricing not published

    UK compliance firm for EU-facing buyers.

    SaaS
    BC

    Brand Compliance

    UnverifiedUnclaimed account
    's-Hertogenbosch, Netherlands
    ISO 27001NIS2
    0.0(0)
    Pricing not published

    RvA- and BELAC-accredited certification body for ISO 27001 and Belgium's CyberFundamentals (CyFun) NIS2 scheme.

    Other
    D

    DigiTrust

    UnverifiedUnclaimed account
    Eindhoven, Netherlands
    ISO 27001
    0.0(0)
    Pricing not published

    RvA-accredited certification body for ISO 27001 and NEN 7510, serving 600+ organizations in the Netherlands.

    HealthcareOther
    CC

    Coalfire Certification

    UnverifiedUnclaimed account
    Westminster, United States
    ISO 27001ISO 27701
    0.0(0)
    Pricing not published

    ISO readiness assessments and certification audits only, no consulting

    SaaSGovernment
    SL

    Sensiba LLP

    UnverifiedUnclaimed account
    Pleasanton, United States
    SOC 1SOC 2ISO 27001ISO 27701ISO 42001HIPAA
    0.0(0)
    Pricing not published

    Top 100 US CPA firm and certified B Corp, fixed-fee SOC 2 and ISO audits

    SaaSFintech
    AC

    AB Certification

    UnverifiedUnclaimed account
    Paris, France
    ISO 27001
    0.0(0)
    Pricing not published

    COFRAC-accredited certification body with 250 auditors and 3,500+ certified clients across France.

    Other
    A

    AARC-360

    UnverifiedUnclaimed account
    Atlanta, United States
    SOC 1SOC 2SOC 3ISO 27001HIPAAPCI DSS
    0.0(0)
    Pricing not published

    PCAOB-registered CPA firm serving small and mid-sized companies.

    SaaSFintech
    BT

    Baker Tilly

    UnverifiedUnclaimed account
    Chicago, United States
    SOC 1SOC 2SOC 2+ISO 27001
    0.0(0)
    Pricing not published

    Global Top 10 CPA firm with a large-scale SOC audit practice

    SaaSFintechHealthcareGovernment
    A

    A-LIGN

    UnverifiedUnclaimed account
    Tampa, United States
    SOC 1HITRUSTFedRAMPSOC 2PCI DSSHIPAAISO 27001
    0.0(0)
    Pricing not published

    Single-provider audits across SOC 2, ISO 27001, FedRAMP, HITRUST, and PCI DSS

    SaaSFintechHealthcareGovernment
    S&

    Schellman & Company

    UnverifiedUnclaimed account
    Tampa, United States
    SOC 3SOC 1HITRUSTFedRAMPSOC 2CMMCPCI DSSISO 27001
    0.0(0)
    Pricing not published

    One of the largest independent SOC examination providers in the US

    SaaSFintechHealthcareGovernment
    IP

    IS Partners

    UnverifiedUnclaimed account
    Horsham, United States
    SOC 1HITRUSTSOC 2CMMCPCI DSSISO 27001NIST
    0.0(0)
    Pricing not published

    Boutique CPA firm led by former Big 4 partners.

    SaaSFintechHealthcare
    IC

    Into Certification

    UnverifiedUnclaimed account
    Finland
    ISO 27001
    0.0(0)
    Pricing not published

    FINAS-accredited, employee-owned certification and information security inspection body.

    HealthcareOther
    I

    Intrinsec

    UnverifiedUnclaimed account
    Courbevoie, France
    ISO 27001NIS2DORA
    0.0(0)
    Pricing not published

    One of France's longest-running cybersecurity firms, PASSI RGS/LPM qualified since 1995.

    Other
    FA

    Fine Assurance

    Verified Peer Reviewed
    Pittsburgh, United States
    SOC 2SOC 1SOC 3ISO 27001ISO 42001HIPAAGDPROther: ISO 27701
    0.0(0)

    Quality-first SOC audits — not checkbox compliance.

    SaaSFintechHealthcareAIStartups
    B

    Brightway

    UnverifiedUnclaimed account
    Sèvres, France
    ISO 27001NIS2DORAGDPR
    0.0(0)
    Pricing not published

    ANSSI PASSI-qualified auditors covering all four audit scopes, plus NIS2, DORA and GDPR advisory.

    Other
    CG

    Compliance Group International

    UnverifiedUnclaimed account
    Denmark
    ISO 27001
    0.0(0)
    Pricing not published

    DANAK-accredited certification body with 14+ years' experience and 500+ audits delivered.

    Other
    H

    HiSolutions

    UnverifiedUnclaimed account
    Berlin, Germany
    ISO 27001
    0.0(0)
    Pricing not published

    BSI-recognized IT security service provider for IS-Revision, serving over half of Germany's DAX 30 companies.

    Other
    LC

    LSTI Certification

    UnverifiedUnclaimed account
    France
    ISO 27001
    0.0(0)
    Pricing not published

    The body authorized by ANSSI to assess and issue France's SecNumCloud cloud security qualification.

    Other
    NC

    Nordic Certification

    UnverifiedUnclaimed account
    Åkersberga, Sweden
    ISO 27001
    0.0(0)
    Pricing not published

    SWEDAC-accredited certification body serving 1,400+ clients across Sweden with 2,400+ certificates issued.

    Other
    N

    NSAI

    UnverifiedUnclaimed account
    Dublin, Ireland
    ISO 27001
    0.0(0)
    Pricing not published

    Ireland's national standards body, INAB-accredited for ISO 27001 certification.

    Other
    S

    Securance

    UnverifiedUnclaimed account
    Utrecht, Netherlands
    SOC 2ISO 27001NIS2DORAGDPR
    0.0(0)
    Pricing not published

    Single Audit, Multiple Standards: SOC, ISAE, ISO, NIS2 and DORA in one integrated process.

    Other
    TA

    Tempo Audits

    UnverifiedUnclaimed account
    United Kingdom
    ISO 27001
    0.0(0)
    Pricing not published

    UKAS-accredited, remote-first ISO 27001 certification built for fast-growing European tech companies.

    Other
    Axipro

    Axipro

    Readiness Partner
    London, United Kingdom
    SOC 2ISO 27001ISO 27701ISO 42001HIPAAGDPRPCI DSSNISTDORACMMCCREST
    0.0(0)
    Pricing not published

    Certification audits and compliance services — SOC 2, ISO 27001 and more — with CREST-accredited penetration testing.

    SaaSFintechOther

    Frequently asked

    How many ISO 27001 auditors serve Europe?

    Nomona lists 24 independent, accredited ISO 27001 audit firms serving Europe today, including firms with global coverage.

    How much does a ISO 27001 audit typically cost?

    Certification-body audit fees vary with organization size, number of sites, and scope, and are separate from the internal effort or consulting to build the ISMS. Larger, multi-site scopes cost materially more than a single-entity ISMS.