ISO 27005 is an international standard that focuses on risk management in the field of information security. It provides a framework and methods for the identification, assessment, and management of risks related to information security within an organization. It is used as part of a broader framework for information security management, for example, in combination with ISO 27001.