ISO 27001 is the international reference standard for managing information security, and within its management system, the Statement of Applicability (SoA) is one of the core documents. It’s the first thing an auditor opens when certification time comes around, and it’s where everything your organization has decided to do to protect its information comes together. […]