ISO/IEC 27001 is the international standard for an Information Security Management System (ISMS).
It affects documentation through security policies, risk treatment plans, procedures, control evidence, statement of applicability, internal audits, and continual improvement.
Additional Resources: