What’s new in 2023? Dayspring has reviewed and compiled a list of newly released and updated compliance and management standards for the first half of the year. A number of new ISO standards, sub-standards, and guidance documents have been published in the past six months. 

In this blog, we cover the top ISO standard updates.

ISO Regulatory Compliance and Quality Management Standards Updates

Ryan Coleman“These standards cover a wide range of topics, including artificial intelligence, cloud computing, systems, and software engineering, the Internet of Things, and telecommunications,” says Ryan Coleman, Dayspring Technology Principal consultant.
 
The below updates to these standards reflect the latest developments in these areas and provide guidance on how to implement best practices.

 

ISO/IEC 27036:2021,2022, and 2023

Part 1, Part 2, and Part 3 documents of ISO / IEC 27036 specify fundamental information security requirements for defining, implementing, operating, monitoring, reviewing, maintaining, and improving supplier and acquirer relationships.

 

ISO/IEC 23894:2023

ISO/IEC 23894:2023 provides guidance on how organizations that develop, produce, deploy or use products, systems, and services that utilize artificial intelligence (AI) can manage AI-specific risks.

 

ISO/IEC/IEEE 26531:2023

ISO/IEC/IEEE 26531:2023 specifies requirements for the efficient development and management of information produced throughout the life cycle of a system and software product, for the provision of information for users of systems and software, and for the management of IT and support services.

 

ISO/IEC 30179:2023

ISO/IEC 30179:2023 is a very specific document that specifies the Internet of Things (IoT) system for ecological environment monitoring including system infrastructure ecological environment monitoring for natural entities such as air, water, soil, and living organisms.

 

Related Blog: 2023 Cybersecurity Updates: HIPAA, DOT, GDPR, FTC & SEC

Other 2023 ISO and FDA Regulatory Compliance Updates

In addition to the new standards that have been published, there have also been a number of updates to existing ISO standard 27001 which Dayspring Technology has covered often since its release, and ISO 13485 the medical device quality management system standard has been updated to include new requirements for the management of cybersecurity risks, likely in response to Sec 524B legislation

Dayspring Technology consultants are trained ISO/IEC Lead Auditors and Lead Implementers able to provide certification guidance and maintenance across a wide variety of ISO standards. Visit here to contact us today or email consulting@dayspringtechnology.com.