December 2025: Key Developments in ISO

December 2025 closes the year with a strong, highly structured push toward trust in digital commerce, business continuity, risk management maturity, and verifiable assurance — across cybersecurity, privacy, sustainability information, and management system auditing. If November was about scaling trust and governance across sustainability and AI, December is about something even more operational: how organizations prove reliability in complex ecosystems.

Three themes dominate the month:

  1. Transaction assurance in e-commerce has become a serious standardization domain of its own — covering fraud mitigation, incident response to personal data leaks, and service-quality evaluation for customer service personnel.
  2. Resilience and risk move deeper into core management system practice, with substantial work on business continuity (ISO 22301/22331) and guidance on integrating ISO 31000 into management systems.
  3. Assurance infrastructure strengthens across the board: auditing (ISO 19011), quality vocabulary (ISO 9000), life cycle processes (ISO/IEC/IEEE 12207), Common Criteria evaluation updates (ISO/IEC 15408 & 18045), and verifiability in sustainability claims (environmental claims, EPDs, sustainability information validation).

For top management, this month reads like a blueprint for 2026: build trust, demonstrate control, and make assurance scalable.

Read more

November 2025: Key Developments in ISO

November 2025 was a defining month for ISO and IEC, with significant movement across environmental management, AI governance, cybersecurity and privacy, quality, competence, resilience, and the circular economy. What’s notable is how clearly the month’s portfolio connects the dots between management systems and real-world outcomes: decarbonization, SDG implementation, trustworthy supply chains, privacy assurance, and human capability development.

For top management, this month’s developments send a strong signal: standards are rapidly becoming the operational language of credible sustainability, digital trust, and organizational resilience — and the leaders who act early will shape how these frameworks land in regulation, procurement, and market expectations.

Read more

October 2025: Key Development in ISO

October 2025 stands out as one of the most substantial months of the year for ISO and IEC, with a dense wave of activity across risk management, resilience, cybersecurity, quality, sustainability, data governance, and social responsibility. From newly published international standards to high-impact draft standards and strategic new work items, the month reinforces a clear message for leadership: organizational performance is now inseparable from trust, transparency, and resilience.

The breadth of October’s portfolio is striking. It spans ISO 9001 application guidance, privacy and cybersecurity certification, biodiversity strategy, climate change integration, AI testing, sustainability verification, and emergency management — all pointing toward a more integrated, systems-based view of management.

Read more

September 2025: Key Developments in ISO

September 2025 marks a strategically important period in ISO and IEC standardization, with strong momentum across circular economy, trusted data usage, artificial intelligence, cybersecurity, innovation, and human-centered governance. The month’s activity reflects a clear shift: standards are no longer only about control and compliance, but about enabling systemic transitions — from linear to circular business models, from opaque AI to trustworthy AI, and from isolated data use to governed data collaboration.

For top management, these developments signal where future regulation, market expectations, and organizational capabilities are converging: carbon markets, circular value networks, supply chain resilience, data trust, and responsible digital transformation.

Read more

August 2025: Key Developments in ISO

August 2025 has been another milestone month for ISO, with critical advances across sustainability, governance, artificial intelligence, security, compliance, and the future of work. From early-stage proposals to near-final standards, the month’s activity underscores ISO’s role in aligning innovation with responsibility, digital transformation with trust, and organizational performance with societal value.

The new and evolving standards touch on some of the most urgent issues facing leaders today: implementing the UN Sustainable Development Goals, guiding anti-money laundering practices, structuring Web 3.0, strengthening privacy and cybersecurity, managing biodiversity net gain, and updating ISO 9001 — the backbone of quality management worldwide.

Read more

ISO 21513: The new standard for post-project evaluation

When a project or programme closes, attention usually shifts quickly to the next initiative. Deadlines are met, reports are filed, and the team moves on. However, the question remains: did the project deliver the promised value?

The new draft standard ISO/DIS 21513: Project, programme and portfolio management – Guidance on post-project and programme evaluation addresses precisely this point. It provides leaders with a structured way to evaluate completed projects and programs, ensuring that outcomes, benefits, and lessons are not only identified but also used to inform and improve future decisions.

Read more

July 2025: Key developments in ISO

July 2025 has been an exceptionally dynamic month for ISO, with landmark publications and progress across artificial intelligence, compliance, human resources, sustainability, cybersecurity, and the sharing economy. The month’s outputs highlight ISO’s growing role in shaping governance, responsible technology, and future-ready management systems.

From beneficial AI systems and privacy frameworks to compliance competence, service excellence, and decarbonization, the July publications show ISO’s ambition to provide organizations with globally aligned, practical, and credible tools for navigating an increasingly interconnected and accountable world.

Read more

Understanding the new ISO/IEC 27000: A guide for executives

A new starting point for cybersecurity standards is taking shape: the 2025 revision of ISO/IEC 27000:2018, now published as a Draft International Standard (DIS). Whether you’re leading a global company or managing critical public infrastructure, understanding how information security standards fit together is essential for strategic planning and risk oversight.

Read more