DS/ISO/IEC 27005
Information technology – Security techniques – Information security risk management
| Organization: | DS |
| Publication Date: | 17 July 2018 |
| Status: | active |
| Page Count: | 60 |
| ICS Code (Management systems): | 03.100.70 |
| ICS Code (IT Security): | 35.030 |
scope:
This document provides guidelines for information security risk management. This document supports the general concepts specified in ISO/IEC 27001 and is designed to assist the satisfactory implementation of information security based on a risk management approach. Knowledge of the concepts, models, processes and terminologies described in ISO/IEC 27001 and ISO/IEC 27002 is important for a complete understanding of this document. This document is applicable to all types of organizations (e.g. commercial enterprises, government agencies, non-profit organizations) which intend to manage risks that can compromise the organization's information security.
Document History