CAN/CSA-ISO/IEC 27014-2021
信息安全、网络安全和隐私保护 信息安全治理(ISO/IEC 27014:2020 IDT)

Information security, cybersecurity and privacy protection - Governance of information security (ISO/IEC 27014:2020, IDT)


 

 

非常抱歉,我们暂时无法提供预览,您可以试试: 免费下载 CAN/CSA-ISO/IEC 27014-2021 前三页,或者稍后再访问。

您也可以尝试购买此标准,
点击右侧 “立即购买” 按钮开始采购(由第三方提供)。

 

标准号
CAN/CSA-ISO/IEC 27014-2021
发布
2021年
发布单位
SCC
当前最新
CAN/CSA-ISO/IEC 27014-2021
 
 
适用范围
  Full Description CSA Preface Standards development within the Information Technology sector is harmonized with international standards development. Through the CSA Technical Committee on Information Technology (TCIT), Canadians serve as the SCC Mirror Committee (SMC) on ISO/IEC Joint Technical Committee 1 on Information Technology (ISO/IEC JTC1) for the Standards Council of Canada (SCC), the ISO member body for Canada and sponsor of the Canadian National Committee of the IEC. Also, as a member of the International Telecommunication Union (ITU), Canada participates in the International Telegraph and Telephone Consultative Committee (ITU-T). This Standard supersedes CAN/CSA-ISO/IEC 27014:18 (adopted ISO/IEC 27014:2013). At the time of publication, ISO/IEC 27014:2020 is available from ISO and IEC in English only. CSA Group will publish the French version when it becomes available from ISO and IEC. This Standard has been formally approved, without modification, by the Technical Committee and has been developed in compliance with Standards Council of Canada requirements for National Standards of Canada. It has been published as a National Standard of Canada by CSA Group. Scope This document provides guidance on concepts, objectives and processes for the governance of information security, by which organizations can evaluate, direct, monitor and communicate the information security-related processes within the organization. The intended audience for this document is: - governing body and top management; - those who are responsible for evaluating, directing and monitoring an information security management system (ISMS) based on ISO/IEC 27001; - those responsible for information security management that takes place outside the scope of an ISMS based on ISO/IEC 27001, but within the scope of governance. This document is applicable to all types and sizes of organizations. All references to an ISMS in this document apply to an ISMS based on ISO/IEC 27001. This document focuses on the three types of ISMS organizations given in Annex B. However, this document can also be used by other types of organizations.

CAN/CSA-ISO/IEC 27014-2021相似标准


推荐

中国主导!量子密钥分发这一国际标准即将发布

2017年11月,国盾量子与中国信息安全测评中心代表中国,在柏林举办的ISO/IEC JTC 1/SC 27(信息安全网络安全隐私保护分技术委员会,以下简称“S27”)工作组会议上联合发起该国际标准项目。标准启动后,国盾量子与中国信息安全测评中心联合国内外技术专家反复研讨标准内容。...

ISOIEC发布多项国际标准,涉及方法验证、生物识别等领域

ISO/IEC 19989系列标准是由ISO/IEC JTC1“信息技术”联合技术委员会的SC27“信息安全网络安全隐私保护”分技术委员会制定。ISO/IEC JTC1/SC27的秘书处是由ISO的德国成员德国标准化协会(DIN)承担。  IEC制定保证ITOT供应链网络安全的国际标准  网络安全公司BlueVoyant的研究表明,有超过80% 的组织因其供应链中的安全漏洞而遭遇过数据泄露。...

西北工业大学遭美国NSA网络攻击,信息安全工作有多重要?

1.2 网络安全规划咨询遵循ISO/IEC 27001或等级保护要求,协助客户组织确定信息安全管理体系范围,制定信息安全方针,明确管理职责,以风险评估为基础选择控制目标与控制措施等一系列活动来建立信息安全管理体系,包括应急预案、人员管理、信息安全管理、人员培训等。按体系的规定要求进行运作,保持体系运行的有效性。...

数据安全须标准、机制技术匹配

11月16日,在工业信息化部举办的《“十四五”信息通信行业发展规划》发布会上,工业信息化部网络安全管理局副局长杜广达表示,数据已成为新型生产要素,加强数据治理保护数据安全事关国家安全人民权益。工信部将一方面加强政策标准建设,研究制定40余项行业亟需重点标准。另一方面狠抓合规管理,督促电信重点互联网企业深入开展数据安全合规评估,指导中国互联网协会成立数据治理工作委员会加强行业自律。   ...





Copyright ©2007-2022 ANTPEDIA, All Rights Reserved
京ICP备07018254号 京公网安备1101085018 电信与信息服务业务经营许可证:京ICP证110310号