people-office-meeting

News

ISO 37001:2025. The new version guides us in the Governance of corporate integrity

Feb 5 2026

DISCOVER THE KEY UPDATES IN THE 2025 VERSION OF ISO 37001

The 2025 version of ISO 37001 introduces updates compared to the 2016 version, aiming to better align the standard with other ISO norms and address emerging risks, especially Cybersecurity.

What are the key timelines of the transition process?

  • From 1 March 2026

    Organizations already certified can request the transition to the 2025 version

  • From 31 August 2026

    Initial certifications according to the 2016 version can no longer be issued

  • From 1 March 2027

    All ISO 37001:2016 certifications must be revoked.

WHAT’S NEW IN ISO 37001:2025?

ISO 37001 is the international reference standard for implementing an anti-bribery management system. It is a voluntary standard that helps organizations improve their integrity, reputation, and corruption risk management.
The updates in the new 2025 version give the standard an approach more aligned with sustainability topics. Climate change is introduced as a relevant factor in the corruption risk assessment (point 4.1).

  • CLIMATE CHANGE
    Climate change is introduced as a relevant factor in the corruption risk assessment (point 4.1)
  • LEADERSHIP AND CORPORATE CULTURE
    Focusing on the topic’s specifics, strong attention is given to the role of leadership and corporate culture as an essential pillar for preventing corruption
  • CONFLICT OF INTEREST
    Secondly, the concept of conflict of interest is explicitly introduced, considered a true risk factor
  • DUE DILIGENCE
    Greater importance is also given to due diligence on clients, suppliers, partners, subcontractors, and stakeholders. Initial verification is no longer sufficient; continuous monitoring and a real corruption risk assessment must follow. Therefore, more attention in selection and the presence of a specific program are required
  • MANAGEMENT REVIEW
    A significant change concerns the Management Review: in the 2016 version, three levels were foreseen (Governing Body, Top Management, and Compliance Function), while in the 2025 revision, the process is simplified by assigning responsibility to Management
  • ANTI-BRIBERY FUNCTION
    Finally, the compliance function for corruption prevention is now called the anti-bribery function, with a clearer definition of roles and interaction with other governance figures.

In the coming months, we will have more information regarding the transition process to the new version, probably expected between 2026 and 2027.

Cybersecurity & Data Protection Certification

Go to the section