首页> 外文会议>International Carnahan Conference on Security Technology >ISO 27001 certification process of Electronic Invoice in the State of Minas Gerais
【24h】

ISO 27001 certification process of Electronic Invoice in the State of Minas Gerais

机译:Minas Gerais国内电子发票的ISO 27001认证过程

获取原文

摘要

This paper presents the process by means of which the Secretariat of Finance of the State Minas Gerais intends to get an ISO 27001 certification of the Electronic Invoice authorization. In 2007, the Secretariat of Finance of Minas Gerais started the project of Electronic Invoice - NF-e, which involves replacing the conventional invoice, on paper, by a document issued and stored electronically that exists only digitally. The purpose of the Electronic Invoice is documenting the movement of goods occurring between the seller and the buyer, which is subject to State taxes. The legal validity of the Electronic Invoice is guaranteed by the issuer's digital signature and by the reception of the data by Secretariat of Finance of Minas Gerais before of the movement of the goods . The information technology architecture of the Electronic Invoice authorization process of the Secretariat of Finance of the State of Minas Gerais is intended to ensure three basic objectives: 1) availability; 2) scalability and 3) elimination of single point of failure. So, the Secretariat of Finance of the State Minas Gerais concluded that the ISO 27001 certification of the information technology production environment, undergoing evaluation by external entities, namely, certification bodies, would demonstrate explicitly the commitment of the State of Minas Gerais with the general public and entrepreneurs who are based in the Minas Gerais and with those who intend establish themselves in the State of Minas Gerais in near future. This work presents some of the difficulties faced by the Secretariat of Finance of the State Minas Gerais during the preparation for the ISO 27001 certification, which is a major step to ensure the security requirements of information assets that are critical to the business. To the best of our knowledge this is the first ISO 27001 certification process of the Electronic Invoice authorization in Brazil, and the first ISO 27001 certification process in the executive branc- of the direct administration in Brazil, in all three levels of government.
机译:本文介绍了该过程,通过该过程,国家Minas Gerais的秘书处旨在获得电子发票授权的ISO 27001认证。 2007年,Minas Gerais的秘书处开始了电子发票 - NF-E的项目,该项目涉及在纸上取代传统的发票,并通过电子方式储存和存储的文件仅以数字方式储存。电子发票的目的是记录卖方与买方之间发生的货物的移动,这是待州税。发行人的数字签名和通过秘书处审阅货物运输前的秘书处的资金秘书处提供了电子发票的法律有效性。信息技术架构临时摩纳达州金融秘书处秘书处的电子发票授权流程旨在确保三个基本目标:1)可用性; 2)可扩展性和3)消除单点故障。因此,国家MINAS Gerais的财务秘书处得出结论,ISO 27001信息技术生产环境的认证,由外部实体进行评估,即认证机构,明确地证明了MINAS GRAIS与公众的致力基于Minas Gerais的企业家以及那些打算在不久的将来在Minas Gerais建立自己的人。这项工作介绍了国家Minas Gerais秘书处在编写ISO 27001认证期间秘书处所面临的一些困难,这是确保对业务至关重要的信息资产安全要求的重要步骤。据我们所知,这是巴西电子发票授权的第一个ISO 27001认证过程,以及在巴西直接管理的第一个ISO 27001认证过程,在所有三个政府中。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号