SecurityGeneral

ISO 27001

Also written as ISO27001, ISMS

An international standard for running an information security management system — the process-and-documentation counterpart to technical security controls.

Think of it like

A certified quality-management process: less about any single control than about proving you manage them systematically.

Junior or senior?

Common in European and enterprise contexts. Signal is in whether they ran the process or merely worked somewhere that held the certificate.

Ask them

“What was your own role in the certification — did you own controls, or work somewhere that had it?”