Skip to content
atlas

Don't confuse these

D-mærket vs ISO 27001

Why they differ

D-mærket is a light Danish label also covering data ethics; ISO 27001 is a heavier international certification of a security system.

D-mærket

Compliance & regulation

A Danish label showing that a company takes care of IT security and data, starting with a free self-check.

Formal

A Danish label scheme, first presented in 2019, with eight criteria spanning management, staff behaviour, technical IT security, supplier demands, openness about data, security built in, reliable AI and data ethics; every firm must meet the first five, the rest depending on its activities.

In plain English

Like the hygiene smiley on a restaurant door, but for how carefully a company treats the information and computers in its care.

In practice

The owner of a heating installer with 30 staff runs the free self-check, learns that backups have never been tested and that suppliers were never asked about security, fixes both and applies for the label.

Why it matters

Small firms rarely have a security team or budget for a full standard; the label gives them a plain starting point and a visible way to show customers they take data seriously.

ISO 27001

Compliance & regulation

The international standard for running an information security management system that can be certified.

Formal

An international standard, current edition 2022, whose clauses 4-10 set the requirements for an information security management system - context, leadership, planning, support, operation, performance evaluation and improvement - with Annex A listing 93 controls to choose from.

In plain English

A set of house rules for running security as a daily routine rather than a one-off clean-up - written so that an outside inspector can check it is really followed.

In practice

Danish state bodies must follow ISO 27001, so the security lead at a ministry uses its clauses to set the scope, run the risk assessment, pick controls from Annex A and report maturity each year - without seeking a certificate.

Why it matters

Without a common measure every customer, auditor and authority would ask for security to be shown in a different way; ISO 27001 gives one structure that can be recognised, audited and mapped to laws such as NIS2.

Shared connections

Atlas is in beta.