ISO 27001 in a Passwordless World: The Passkey Migration Playbook

1 min read
Source: BleepingComputer
ISO 27001 in a Passwordless World: The Passkey Migration Playbook
Photo: BleepingComputer
TL;DR

The article argues that enterprises should migrate from password-based authentication to passkeys (FIDO2/WebAuthn) to strengthen security and stay compliant with ISO/IEC 27001, detailing how passkeys work, which controls they map to, practical migration steps, risk considerations (device loss, downgrade attacks), and best practices for phased rollout and documentation, with Passwork offering migration support.

Share this article

Want the full story? Read the original reporting

Read on BleepingComputer