What is ISO 27050‑3 about?
The ISO 27050 series discusses information technology. ISO 27050‑3 provides requirements and recommendations on activities in electronic discovery, including, but not limited to, identification, preservation, collection, processing, review, analysis and production of electronically stored information (ESI). In addition, ISO 27050 specifies relevant measures that span the lifecycle of the ESI from its initial creation through to final disposition.
ISO 27050 is relevant to both non-technical and technical personnel involved in some or all of the electronic discovery activities.
Note: The user is expected to be aware of any applicable jurisdictional requirements.
Who is ISO 27050‑3 for?
ISO 27050‑3 on electronic discovery is useful for:
- Corporate legal counsel
- ICT personnel
- Records management personnel
- Data custodians
- HR personnel
- Business leaders
- Electronic discovery consultants
Why should you use ISO 27050‑3?
Electronic discovery often serves as a driver for investigations, as well as evidence acquisition and handling activities. In addition, the sensitivity and criticality of the data sometimes necessitate protections like storage security to guard against data breaches. Electronic discovery involves presenting ESI in response to a request for presenting it in a lawsuit or investigation. This process includes identification, collection and production of the ESI.
ISO 27050‑3 provides additional materials to help you better understand the objectives associated with each electronic discovery process element and considerations. This helps you to avoid failures, which can mitigate risk and expense if electronic discovery becomes an issue. ISO 27050‑3 helps you to understand how to comply with the requirements regulations of electronic discovery.

