ISO/IEC 27001 - Information security, cybersecurity and privacy protection
Book information
Description
19 page document costs 124 CHF at https://www.iso.org/standard/27001, has a list of security controls at the end. 1. What is ISO/IEC 27001? ISO/IEC 27001 is the world's best-known standard for information security management systems (ISMS). It defines requirements an ISMS must meet. The ISO/IEC 27001 standard provides companies of any size and from all sectors of activity with guidance for establishing, implementing, maintaining and continually improving an information security management system. Conformity with ISO/IEC 27001 means that an organization or business has put in place a system to manage risks related to the security of data owned or handled by the company, and that this system respects all the best practices and principles enshrined in this International Standard. 2. Why is ISO/IEC 27001 important? With cyber-crime on the rise and new threats constantly emerging, it can seem difficult or even impossible to manage cyber-risks. ISO/IEC 27001 helps organizations become risk-aware and proactively identify and address weaknesses. ISO/IEC 27001 promotes a holistic approach to information security: vetting people, policies and technology. An information security management system implemented according to this standard is a tool for risk management, cyber-resilience and operational excellence.
Similar books
ISO/FDIS 59020:2024 Circular economy — Measuring and assessing circularity performance
2024 · PDF
ISO/FDIS 59010:2024 Circular economy — Guidance on the transition of business models and value networks
2024 · PDF
ISO/FDIS 59004:2024 Circular economy — Vocabulary, principles and guidance for implementation
2024 · PDF
IEC 61000-4-2: Electromagnetic compatibility (EMC) - Part 4-2: Testing and measurement techniques - Electrostatic discharge immunity test (IEC 61000-4-2:2008)
2008 · PDF
ISO 80000-4 - Quantities and units - Part 4: Mechanics
2006 · PDF
IEC 62443-3-2 Ed. 1.0 en:2020, First Edition: Security for industrial automation and control systems - Part 3-2: Security risk assessment for system design
2020 · PDF
BS EN 61010-1: Safety requirements for electrical equipment for measurement, control, and laboratory use - Part 1: General requirements (BS EN 61010-1:2010, IEC 61010-1:2010)
2010 · PDF
IEC 60479-1: Effects of current on human beings and livestock - Part 1: General aspects (IEC TS 60479-1:2005+AMD1:2016 CSV)
2016 · PDF