BITS Financial Services Roundtable - Security assessment questionnaire and review process based on ISO/IEC 27002 (access requires free registration). Also information on the overlaps between ISO/IEC 27002, PCI-DSS 1.1 and COBIT.
Common Criteria - Provides the Common Criteria for Information Technology Security Evaluation, also published as ISO/IEC 15408.
Information Governance Limited - Supplier of Proteus Enterprise security risk management software for compliance with ISO/IEC 17799 and related information security, risk management and IT governance standards.
ISO 27001 Certificates - List of organizations certified against ISO/IEC 27001 or equivalent national standards, maintained by the ISMS International User Group based on inputs from all the certification bodies.
The ISO 27000 Directory - Information covering the ISO/IEC 27000 series of standards, including updates and consultants directory
ISO 27001 Security - Information about the ISO/IEC 27000-series information security standards and other related standards, with discussion forum and FAQ.
ISO 27000 Toolkit - Package containing the ISO/IEC 27001 and 27002 standards plus supporting materials such as policies and a glossary.
ISO/IEC 27002 Explained - Information on ISO/IEC 27001 and 27002 from BERR, the UK government department for Business Enterprise and Regulatory Reform (formerly the DTI, the Department of Trade and Industry).
ISO/IEC 27001 Frequently Asked Questions - FAQ covers the basics of ISO/IEC 27001, the ISO/IEC standard Specification for an Information Security Management System.
ISO/IEC 27002:2005 Information Technology - Code of Practice for Information Security Management - ISO site outlines the contents of the standard.
ISO27k Implementers' Forum - Google Groups forum for those actively implementing the ISO/IEC 27000-series standards. Membership required for viewing content.
IT Governance Limited - Information, books, tools and training for developing and implementing an information security management system in line with the international best-practice specification ISO/IEC 27001.