ENGLISH

Information Technology - Security Techniques - Code of Practice for Information Security

Book information

Publisher
BSI Standards Publication
Year
2013
Language
english
Format
PDF
Filesize
1 MB (1421897 bytes)
Pages
94\94
Time added
2020-01-27 13:34:05

Description

ISO_IEC_27002_2013(E)-Character_PDF_document.pdf......Page 0 4.2 Control categories......Page 11 5.1 Management direction for information security......Page 12 Section sec_5.1.2......Page 13 6.1 Internal organization......Page 14 Section sec_6.1.4......Page 15 6.2 Mobile devices and teleworking......Page 16 Section sec_6.2.2......Page 17 7.1 Prior to employment......Page 19 7.2 During employment......Page 20 Section sec_7.2.2......Page 21 Section sec_7.2.3......Page 22 8.1 Responsibility for assets......Page 23 Section sec_8.1.3......Page 24 8.2 Information classification......Page 25 Section sec_8.2.3......Page 26 8.3 Media handling......Page 27 Section sec_8.3.3......Page 28 9.1 Business requirements of access control......Page 29 Section sec_9.1.2......Page 30 9.2 User access management......Page 31 Section sec_9.2.4......Page 32 Section sec_9.2.6......Page 33 9.3 User responsibilities......Page 34 9.4 System and application access control......Page 35 Section sec_9.4.3......Page 36 Section sec_9.4.4......Page 37 10.1 Cryptographic controls......Page 38 Section sec_10.1.2......Page 39 11.1 Secure areas......Page 40 Section sec_11.1.2......Page 41 Section sec_11.1.4......Page 42 11.2 Equipment......Page 43 Section sec_11.2.2......Page 44 Section sec_11.2.4......Page 45 Section sec_11.2.6......Page 46 Section sec_11.2.8......Page 47 12.1 Operational procedures and responsibilities......Page 48 Section sec_12.1.2......Page 49 Section sec_12.1.4......Page 50 12.2 Protection from malware......Page 51 12.3 Backup......Page 52 12.4 Logging and monitoring......Page 53 Section sec_12.4.2......Page 54 12.5 Control of operational software......Page 55 12.6 Technical vulnerability management......Page 56 12.7 Information systems audit considerations......Page 58 13.1 Network security management......Page 59 13.2 Information transfer......Page 60 Section sec_13.2.1......Page 61 Section sec_13.2.3......Page 62 Section sec_13.2.4......Page 63 14.1 Security requirements of information systems......Page 64 Section sec_14.1.2......Page 65 Section sec_14.1.3......Page 66 14.2 Security in development and support processes......Page 67 Section sec_14.2.3......Page 68 Section sec_14.2.5......Page 69 Section sec_14.2.7......Page 70 Section sec_14.2.9......Page 71 15.1 Information security in supplier relationships......Page 72 Section sec_15.1.2......Page 73 Section sec_15.1.3......Page 75 15.2 Supplier service delivery management......Page 76 16.1 Management of information security incidents and improvements......Page 77 Section sec_16.1.2......Page 78 Section sec_16.1.5......Page 79 Section sec_16.1.7......Page 80 17.1 Information security continuity......Page 81 Section sec_17.1.2......Page 82 17.2 Redundancies......Page 83 18.1 Compliance with legal and contractual requirements......Page 84 Section sec_18.1.3......Page 85 Section sec_18.1.5......Page 86 18.2 Information security reviews......Page 87 Section sec_18.2.3......Page 88 Bibliography......Page 89 Reference ref_27......Page 90 Foreword......Page 7 0 Introduction......Page 8

Similar books