BS ISO/IEC 24762-2008
信息技术.安全技术.信息和通信技术故障恢复服务用指南

Information technology - Security techniques - Guidelines for information and communications technology disaster recovery services


 

 

非常抱歉,我们暂时无法提供预览,您可以试试: 免费下载 BS ISO/IEC 24762-2008 前三页,或者稍后再访问。

如果您需要购买此标准的全文,请联系:

点击下载后,生成下载文件时间比较长,请耐心等待......

 

标准号
BS ISO/IEC 24762-2008
发布日期
2008年02月29日
实施日期
2008年02月29日
废止日期
中国标准分类号
A90
国际标准分类号
35.040
发布单位
GB-BSI
适用范围
1.1 General This International Standard describes the basic practices which ICT DR service providers, both in-house and outsourced, should consider. It covers the requirements that service providers should meet, recognizing that individual organizations may have additional requirements that are specific to them (which would have to be addressed in the agreements/contracts with service providers). Examples of such organization requirements may include special encryption software and secured operation procedures, equipment, knowledgeable personnel and application documentation. Such additional organization specific requirements, if necessary, are generally negotiated on a case-by-case basis and are the subject of detailed contract negotiations between organizations and their ICT DR service providers and are not within the scope of this International Standard. 1.2 Exclusions This International Standard does not: a) provide any guidance on business continuity management as a whole for organizations; b) take precedence over any laws and regulations, both existing and those in the future; c) have any legal power over the Service Level Agreements (SLAs) included in negotiated contracts between organizations and service providers; d) address requirements, legal or otherwise, governing normal business operations to be adhered to by service providers. Examples of such requirements include detailed regulations covering building and fire safety, occupational health and safety, copyright regulation and prevailing human resource practices; e) provide an exhaustive list, and thus technical security controls are not covered. Readers should refer to ISO/IEC 27001 and ISO/IEC 27002, vendor literature and other technical references, as necessary. 1.3 Audience This International Standard applies to: a) all organizations requiring the ICT DR services as part of their business (whether in-house and/or outsourced); b) ICT DR service providers in their provision of ICT DR services; c) communities of organizations with reciprocal or mutual arrangements.




Copyright ©2007-2022 ANTPEDIA, All Rights Reserved
京ICP备07018254号 京公网安备1101085018 电信与信息服务业务经营许可证:京ICP证110310号