ISO/IEC 27005:2008 

Information technology -- Security techniques -- Information security risk management

Media and price

Language Format Add to basket
English PDF (628 kB) CHF 158,00
English Paper CHF 158,00

General information

Number of Pages: 55


Edition: 1 (Monolingual) ICS: 35.040
Status: Published Stage: 60.60 (2008-06-04)
TC/SC: JTC 1/SC 27  

Abstract

ISO/IEC 27005:2008 provides guidelines for information security risk management. It supports the general concepts specified in ISO/IEC 27001 and is designed to assist the satisfactory implementation of information security based on a risk management approach. Knowledge of the concepts, models, processes and terminologies described in ISO/IEC 27001 and ISO/IEC 27002 is important for a complete understanding of ISO/IEC 27005:2008. ISO/IEC 27005:2008 is applicable to all types of organizations (e.g. commercial enterprises, government agencies, non-profit organizations) which intend to manage risks that could compromise the organization's information security.

Revision information

Revises: ISO/IEC TR 13335-3:1998

Revises: ISO/IEC TR 13335-4:2000

These standards could also interest you

  • ISO/IEC 27003:2010
    Information technology -- Security techniques -- Information security management system implementation guidance
  • ISO/IEC 27033-1:2009
    Information technology -- Security techniques -- Network security -- Part 1: Overview and concepts
  • ISO/IEC 19792:2009
    Information technology -- Security techniques -- Security evaluation of biometrics
 
The following article has been added to your basket
Continue shopping  Proceed to checkout