ISO 27001, Law 21,663 and Law 21,719
An ecosystem for information security, cybersecurity and personal data protection
All three share governance, risk analysis, incident management and access control. Implementing them on a single management system means building the information asset inventory once and evidencing each control once, even though it satisfies all three frameworks.