ISO 27001 Standard published
After several months in final draft mode, ISO 27001 has been published as an official standard. It essentially defines an Information Security Management System and compliments the ISO 17799 'code of practice' standard. These two standards are closely aligned, but fulfill clear and distinct roles:
CATEGORIES: 1standards, 1ISO17799, 1ISO27001, 1ISMS, 1certification,1best practices, 1first
- ISO 17799 details many hundreds of individual security controls, which may be selected and applied as part of the security management system.
- ISO 27001 specifies the requirements for the security management system itself. It is this standard, as opposed to ISO 17799, against which certification is offered. ISO 27001 has also been "harmonized" to be compatible with other management standards, such as ISO 9000 and ISO 14000.
CATEGORIES: 1standards, 1ISO17799, 1ISO27001, 1ISMS, 1certification,1best practices, 1first
0 Comments:
Post a Comment
<< Home