3. ISO 27001 standard
A first document, ISO/IEC 17799, published in 2005, dealt with security techniques and provided a code of good practice for information security management. These implementation recommendations are included in the normative Annex A of ISO/IEC 27001. The 2013 version includes a major evolution in requirements. Of particular note are:
Definitions are given in ISO/IEC 27000 ;
two additional requirement chapters: 4 to 10 instead of 4 to 8;
normative Annex A, which adopts a new structure: 14 objective sectors instead of 11, and 114 safety measures instead of 133;
the former informative appendices B and C are deleted.
...
You do not have access to this resource.
Exclusive to subscribers. 97% yet to be discovered!
Already subscribed?
Log in!
Ongoing reading
ISO 27001 standard