现行
INCITS/ISO/IEC 27001-2005
到馆提醒
收藏跟踪
分享链接
购买正版
选择购买版本
本服务由中国标准服务网提供
更多
前往中国标准服务网获取更多购买信息
支持批量购买纸质版标准
Information technology - Information technology - Security techniques - Information security management systems - Requirements
信息技术.信息技术.安全技术.信息安全管理系统.要求
查看内容。本国际标准旨在为制定、实施、运行、,
监控、审查、维护和改进信息安全管理系统(ISMS)。这个
采用ISMS应该是一个组织的战略决策。一个应用程序的设计与实现
组织的ISMS受其需求和目标、安全要求和流程的影响
以及组织的规模和结构。预计这些系统及其支持系统将
随着时间的推移而改变。预计ISMS的实施将根据
组织,例如,一个简单的情况需要一个简单的ISMS解决方案。
View contents.This International Standard has been prepared to provide a model for establishing, implementing, operating,
monitoring, reviewing, maintaining and improving an Information Security Management System (ISMS). The
adoption of an ISMS should be a strategic decision for an organization. The design and implementation of an
organization's ISMS is influenced by their needs and objectives, security requirements, the processes
employed and the size and structure of the organization. These and their supporting systems are expected to
change over time. It is expected that an ISMS implementation will be scaled in accordance with the needs of
the organization, e.g. a simple situation requires a simple ISMS solution.