SIQ Ljubljana

SIQ Ljubljana

Speciality: Cybersecurity Penetration Testing for Connected Products

Slovenia 205 employees
[01] About

Slovenian Institute of Quality and Metrology (SIQ Ljubljana) is a private, independent organization providing product testing, certification, management systems assessment, and metrology services; with 131 employees and 9.6% annual growth, it offers penetration testing and cybersecurity solutions to ensure safety and quality in various sectors, based in Slovenia.

SIQ Ljubljana (Slovenian Institute of Quality and Metrology, Ljubljana) is a professional, independent and impartial institution providing complete solutions in the fields of product testing and certification, management systems assessment, metrology, and training. Providing a wide range of comprehensive services, it is our objective to support organizations in their endeavours to realize their goals relating to the quality of their products and services, and to increase the productivity and efficiency of their operation. For 60 years we have cooperated with organizations in their endeavours to enter markets, increase productivity, improve quality and reach excellence. Numerous accreditations and memberships of international certification schemes and associations are evidence of the international validity and high professional level of our work. Our key competitive advantage is the knowledge and experiences of our experts, international recognition and credibility, flexibility, complete solutions, ever new services and ability to adapt to the market.
[02] Services
Product Testing
Certification
Evaluation
Conformity Assessment
Metrology
Education
Penetration Testing
Cybersecurity Services
Red Teaming
Security Assessments
[03] Certifications
ISO/IEC 17025
ISO/IEC 17020
ISO/IEC 17065
ISO/IEC 17021
ISO 9001:2015

ISO 9001:2015 and Cybersecurity/IT


Origin and Development


ISO 9001:2015 is a quality management system standard developed by the International Organization for Standardization (ISO), a global federation of national standards bodies. However, it's important to clarify that ISO 9001:2015 is not specifically a cybersecurity or IT certification—it's a general quality management standard applicable to any organization regardless of industry. The standard was released in 2015 as the fifth revision of ISO 9001, which was first published in 1987. For cybersecurity specifically, ISO created ISO/IEC 27001, which is the actual information security management system standard.


Industry Value and Importance


ISO 9001:2015 is valued across industries because it demonstrates an organization's commitment to consistent quality management, customer satisfaction, and continuous improvement. When applied to IT and cybersecurity contexts, it helps organizations establish systematic processes for service delivery and quality assurance. However, for cybersecurity-specific certification, organizations typically pursue ISO/IEC 27001, which directly addresses information security controls, risk management, and data protection. Both certifications are internationally recognized and often required for government contracts, enterprise partnerships, and demonstrating due diligence to customers and stakeholders.

ISO 22000:2018
ISO 50001:2018
ISO 13485:2016
ISO/IEC 27001:2022

ISO/IEC 27001:2022


Origin


ISO/IEC 27001 was developed jointly by the International Organization for Standardization (ISO) and the International Electrotechnical Commission (IEC). The standard evolved from the British Standard BS 7799, first published in 1995, with the first ISO/IEC 27001 version released in 2005. The most recent version, ISO/IEC 27001:2022, was published in October 2022. It was created to provide organizations with a systematic framework for establishing, implementing, maintaining, and continually improving an Information Security Management System (ISMS), addressing the growing need for standardized approaches to protecting sensitive information in an increasingly digital world.


Industry Value


ISO/IEC 27001 is highly valued in the industry because it demonstrates an organization's commitment to information security through independent, third-party certification. The standard provides credibility and competitive advantage, often serving as a prerequisite for doing business with government agencies and security-conscious organizations. It helps companies systematically identify and manage information security risks, ensure regulatory compliance, and build customer trust. For many industries—particularly finance, healthcare, technology, and cloud services—ISO/IEC 27001 certification has become essential for winning contracts, entering new markets, and demonstrating due diligence in protecting client and organizational data.