...
首页> 外文期刊>Journal of Information Security >ISO/IEC 27000, 27001 and 27002 for Information Security Management
【24h】

ISO/IEC 27000, 27001 and 27002 for Information Security Management

机译:ISO / IEC 27000、27001和27002用于信息安全管理

获取原文
           

摘要

With the increasing significance of information technology, there is an urgent need for adequate measures of information security. Systematic information security management is one of most important initiatives for IT management. At least since reports about privacy and security breaches, fraudulent accounting practices, and attacks on IT systems appeared in public, organizations have recognized their responsibilities to safeguard physical and information assets. Security standards can be used as guideline or framework to develop and maintain an adequate information security management system (ISMS). The standards ISO/IEC 27000, 27001 and 27002 are international standards that are receiving growing recognition and adoption. They are referred to as “common language of organizations around the world” for information security [1]. With ISO/IEC 27001 companies can have their ISMS certified by a third-party organization and thus show their customers evidence of their security measures.
机译:随着信息技术的重要性日益提高,迫切需要采取适当的信息安全措施。系统的信息安全管理是IT管理最重要的举措之一。至少自从公开出现有关隐私和安全漏洞,欺诈性会计惯例以及对IT系统的攻击的报告以来,组织就已经意识到其保护实物和信息资产的责任。安全标准可以用作开发和维护适当的信息安全管理系统(ISMS)的指南或框架。标准ISO / IEC 27000、27001和27002是国际标准,正在得到越来越多的认可和采用。为了信息安全,它们被称为“世界各地组织的通用语言” [1]。借助ISO / IEC 27001,公司可以通过第三方组织对ISMS进行认证,从而向客户显示其安全措施的证据。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号