Information security management systems

Managing information security

The world has become a far more risky place for business. The Internet is being used for on-line business continues to grow, more businesses are outsourcing and using third party services, supply chains are getting larger and computer fraud is on the increase all risk areas to business. Also business dependence on IT, networks, wireless and mobile communications again raises the risk levels.

State-of-the-art information security management systems with ISO/IEC 27001:2005

The publication of ISO/IEC 27001:2005 is a big event in the world of information security and one that has been eagerly awaited.

New ISO/IEC standard gives overview of information security management systems

With more and more organizations implementing information security management systems (ISMS) as part of their risk management strategy, the publication of a new ISO/IEC standard giving an overview of ISMS is particularly timely.

ISO/IEC 27000:2009, Information technology – Security techniques – Information security management systems – Overview and vocabulary, will assist organizations of all types to understand the fundamentals, principles and concepts to improve protection of their information assets.

Improved ISO/IEC 17799 heralds new series on information security management systems

ISO/IEC 17799:2005 is the international code of good practice for information security management.

The integrated use of management system standards

Integrated use of MS standardsGuidance on how to make integrated use of management system standards

Related standards

  • ISO/IEC 17799:2005
    Information technology -- Security techniques -- Code of practice for information security management
  • ISO/IEC 27000:2009
    Information technology -- Security techniques -- Information security management systems -- Overview and vocabulary
  • ISO/IEC 27001:2005
    Information technology -- Security techniques -- Information security management systems -- Requirements
  • ISO/IEC 27006:2007
    Information technology -- Security techniques -- Requirements for bodies providing audit and certification of information security management systems

Related information

 
The following article has been added to your basket
Continue shopping  Proceed to checkout