Skip to main content
All Frameworks
ISO 27001

ISO 27001:2022 Compliance Checker

ISO 27001:2022 is the international standard for information security management. Our scanner verifies your website configuration against key Annex A controls: cryptography usage (A.8.24), configuration management (A.8.9), network security (A.8.20), and technical vulnerability management (A.8.8). Use the results to support your ISMS implementation and demonstrate continuous compliance to auditors.

4

Requirements

26

Security Checks

27

Total Mappings

Requirements & Mapped Checks

A.8.24

Use of Cryptography

Rules for the effective use of cryptography, including key management.

HTTPS enabledFree
TLS VersionFree
Deprecated TLS versionsFree
Cipher SuiteFree
Certificate ExpiryFree
Certificate Hostname & ChainPro
OCSP StaplingPro
HSTS enabledFree
A.8.9

Configuration Management

Configurations of hardware, software, services, and networks are managed.

Content Security Policy (CSP)Free
HSTS enabledFree
Frame Security PolicyFree
Set-Cookie headersFree
X-Content-Type-Options headerFree
Referrer PolicyFree
Permissions-Policy headerFree
Server information disclosureFree
Cookie Security PrefixesPro
A.8.20

Network Security

Networks and network devices are secured and protected.

Access-Control-Allow-OriginPro
Access-Control-Allow-CredentialsPro
Open PortsPro
Cross-Origin Resource IsolationFree
A.8.8

Management of Technical Vulnerabilities

Information about technical vulnerabilities is obtained and appropriate measures taken.

Vulnerable JS LibrariesPro
Sensitive Files ExposurePro
Exposed Admin PanelsPro
Source Map ExposurePro
Subdomain TakeoverPro
Technology FingerprintingPro

How SecScanner Checks ISO 27001 Compliance

SecScanner runs automated, non-intrusive security checks against your website and maps the results to ISO 27001:2022 requirements. Each check verifies a specific aspect of your web security configuration.

Non-intrusive scanning

All checks analyze publicly visible configuration — safe to run in production without any risk of disruption.

After scanning, you can view your per-requirement compliance score, see which checks passed or failed, and export a PDF compliance report for auditors or internal reviews.

Ready to Check Your ISO 27001 Compliance?

Run a free security scan and see how your website maps to ISO 27001:2022 requirements.