组织实施信息安全政策的制度框架,包含规范制定、控制措施实施及管理活动的系统化过程。具有建立、实施、维护和改进ISMS的功能特征,适用于单/多系统环境。
| 标准号 & 类别 | 标准名称 | 发布 |
|---|---|---|
| AS ISO/IEC 27001:2015 规范标准 |
Information technology — Security techniques — Information security management systems — Requirements
信息安全政策 信息安全风险 |
2015-04-29 澳大利亚标准协会 |
| AS ISO/IEC 27002:2015 指南标准 |
Information technology security technology Information security management practice
控制措施 |
2015 澳大利亚标准协会 |
| AS ISO/IEC 27003:2017 指南标准 |
Information technology — Security techniques — Information security management systems — Guidance
|
2017-09-26 澳大利亚标准协会 |
| AS ISO/IEC 27004:2018 指南标准 |
Information technology — Security techniques — Information security management — Monitoring, measurement, analysis and evaluation
|
2018-02-22 澳大利亚标准协会 |
| AS/NZS ISO/IEC 27001:2006 规范 |
Information technology Security techniques Information security management systems Requirements
|
2006-06-23 澳大利亚/新西兰标准 |
| AS/NZS ISO/IEC 27001:2023 规范标准 |
Information security, cybersecurity and privacy protection — Information security management systems — Requirements
信息安全风险 |
2023-09-15 澳大利亚/新西兰标准 |
| AS/NZS ISO/IEC 27011:2025 |
信息安全、网络安全与隐私保护 基于ISO/IEC 27002的信息安全控制措施 适用于电信组织 Information security, cybersecurity and privacy protection - Information security controls based on ISO/IEC 27002 for telecommunications organizations
电信组织 |
2025-05-23 澳大利亚标准协会 |
| BIP 0071-2014 指南标准 |
基于ISO/IEC 27001的信息安全管理系统的认证要求与准备指南 Certification requirements and preparation guide for information security management systems based on ISO/IEC 27001
信息安全风险 |
2014 英国标准学会 |
| BIP 0072-2014 指南标准 |
Information security management system requirements
适用性声明 |
2014 英国标准学会 |
| BIP 0073-2014 指南标准 |
基于ISO/IEC 27001信息安全管理体系(ISMS)控制功能的执行和审查指南 Guide to the implementation and auditing of ISMS controls based on ISO/IEC 27001
|
2014 英国标准学会 |
| BIP 0074-2006 指南标准 |
衡量基于ISO/IEC 27001的信息安全管理实施的有效性 Measuring the effectiveness of information security management implementation based on ISO/IEC 27001
指标 |
2006 英国标准学会 |
| BIP 0076-2010 指南标准 |
Information Security Risk Management - Handbook for ISO/IEC 27001
残余风险 |
2010-04-01 英国标准学会 |
| BIP 0139-2013 指南标准 |
An Introduction to ISO/IEC 27001:2013
适用性声明 |
2013-10-04 英国标准学会 |
| BS 7799-3:2006 指南标准 |
Information security management systems - Guidelines for information security risk management
风险处理 |
2006-03-17 英国标准学会 |
| BS 7799-3:2017 指南标准 |
Information security management systems - Guidelines for information security risk management
风险处理 |
2017-10-31 英国标准学会 |
| BS EN ISO/IEC 27000:2020 术语 |
Information technology. Security techniques. Information security management systems. Overview and vocabulary
|
2020-03-31 英国标准学会 |
| BS ISO/IEC 27003:2017 指南标准 |
Information technology. Security techniques. Information security management systems. Guidance
|
2017-04-21 英国标准学会 |
| BS ISO/IEC 27004:2016 指南标准 |
Information technology. Security techniques. Information security management. Monitoring, measurement, analysis and evaluation
|
2016-12-31 英国标准学会 |
| BS ISO/IEC 27009:2020 规范标准 |
信息安全、网络安全和隐私保护 ISO/IEC 27001的特定行业应用 要求 Information security, cybersecurity and privacy protection. Sector-specific application of ISO/IEC 27001. Requirements
控制措施 |
2020-11-13 英国标准学会 |
| BS ISO/IEC 27011:2024 指南标准 |
信息安全、网络安全和隐私保护 电信组织基于 ISO/IEC 27002 的信息安全控制 Information security, cybersecurity and privacy protection. Information security controls based on ISO/IEC 27002 for telecommunications organizations
电信组织 |
2024-04-30 英国标准学会 |
| BS ISO/IEC 27013:2021 指南标准 |
信息安全、网络安全和隐私保护 ISO/IEC 27001和ISO/IEC 20000-1综合实施指南 Information security, cybersecurity and privacy protection. Guidance on the integrated implementation of ISO/IEC 27001 and ISO/IEC 20000-1
服务管理体系 |
2021-11-30 英国标准学会 |
| BS ISO/IEC 27014:2020 指南标准 |
Information security, cybersecurity and privacy protection. Governance of information security
治理机构 |
2020-12-17 英国标准学会 |
| BS ISO/IEC 27021:2017+A1:2021 规范标准 |
Information technology. Security techniques. Competence requirements for information security management systems professionals
能力 |
2021-12-31 英国标准学会 |
| CAN/CSA-ISO/IEC 27001:2014 规范 |
Information technology - Security techniques - Information security management systems - Requirements
|
2014-01-01 加拿大标准协会 |
| CAN/CSA-ISO/IEC 27003:2018 指南 |
Information technology — Security techniques — Information security management systems — Guidance
信息安全风险 利益相关方 |
2018 加拿大标准协会 |
| CAN/CSA-ISO/IEC 27004:2018 指南标准 |
Information technology — Security techniques — Information security management — Monitoring, measurement, analysis and evaluation
|
2018 加拿大标准协会 |
| CAN/CSA-ISO/IEC TS 33072:2018 试验 |
Information technology — Process assessment — Process capability assessment model for information security management
过程能力 过程评估模型 |
2018 加拿大标准协会 |
| CNAS SC170-2017 指南标准 |
Information Security Management System Accreditation Scheme
|
2017-01-01 中国合格评定国家认可委员会 |
| CSA ISO/IEC 27000:2019 术语标准 |
Information technology — Security techniques — Information security management systems — Overview and vocabulary
|
2019 加拿大标准协会 |
| CSA ISO/IEC 27002-2015(R2019) 指南标准 |
Information Technology Security Technology Information Security Control Practice Guide
信息安全政策 控制措施 |
2019 加拿大标准协会 |
| CSA ISO/IEC 27009:2020 规范标准 |
信息安全、网络安全和隐私保护 ISO/IEC 27001 的特定行业应用 要求(采用 ISO/IEC 27009:2020,第二版,2020-04) Information security, cybersecurity and privacy protection - Sector-specific application of ISO/IEC 27001 - Requirements (Adopted ISO/IEC 27009:2020, second edition, 2020-04)
|
2020-11-01 加拿大标准协会 |
| CSA ISO/IEC 27014:2021 指南标准 |
信息安全、网络安全和隐私保护 信息安全治理(采用 ISO/IEC 27014:2020,第二版,2020-12) Information security, cybersecurity and privacy protection - Governance of information security (Adopted ISO/IEC 27014:2020, second edition, 2020-12)
最高管理层 治理机构 |
2021-07-01 加拿大标准协会 |
| CSA ISO/IEC TR 20000-7:2020 指南标准 |
信息技术 服务管理 第7部分:ISO/IEC 20000-1:2018 与 ISO 9001:2015 和 ISO/IEC 27001:2013 的集成和关联指南 Information technology — Service management — Part 7: Guidance on the integration and correlation of ISO/IEC 20000-1:2018 to ISO 9001:2015 and ISO/IEC 27001:2013
服务管理体系 |
2020 加拿大标准协会 |
| CSA ISO/IEC TS 27008:2020 指南标准 |
Information technology — Security techniques — Guidelines for the assessment of information security controls
信息安全控制 技术评估 |
2020 加拿大标准协会 |
| DIN EN 16495 E:2012-11 指南标准 |
Air Traffic Management - Information security for organisations supporting civil aviation operations
信任 空中交通管理 |
2012-11 德国标准化学会 |
| DIN EN 17926:2023-02 规范标准 |
符合 ISO/IEC 27701 的隐私信息管理系统 在欧洲背景下的改进 Privacy Information Management System per ISO/IEC 27701 - Refinements in European context; German and English version prEN 17926:2022 / Note: Date of issue 2023-01-06
|
2023-02 德国标准化学会 |
| DIN EN ISO 27799:2008 规范 |
健康信息学.使用ISO/IEC 27002的健康信息安全管理 Health informatics - Information security management in health using ISO/IEC 27002 (ISO 27799:2008); English version of DIN EN ISO 27799:2008-10
健康信息 |
2008-10 德国标准化学会 |
| DIN EN ISO IEC 27007 E:2021-10 指南标准 |
信息技术 安全实践 信息安全管理体系审核指南 (ISO/IEC 27007:2020) Information technology security practices - Guidelines for auditing information security management systems (ISO/IEC 27007:2020)
审核 审核员 |
2021-10 德国标准化学会 |
| DIN EN ISO/IEC 27000:2020 术语 |
信息技术 安全技术 信息安全管理系统 概述和词汇(ISO/IEC 27000:2018) Information technology - Security techniques - Information security management systems - Overview and vocabulary (ISO/IEC 27000:2018)
信息安全事件 |
2020-06-01 德国标准化学会 |
| DIN EN ISO/IEC 27000:2020-06 指南标准 |
Information technology - Security techniques - Information security management systems - Overview and vocabulary (ISO/IEC 27000:2018); German version EN ISO/IEC 27000:2020
|
2020-06 德国标准化学会 |
| DIN EN ISO/IEC 27001:2017 规范 |
信息技术.安全技术.信息安全管理系统.要求(ISO/IEC 27001-2013包括Cor 1-2014和Cor 2-2015);德文版本EN ISO/IEC 27001-2017 Information technology - Security techniques - Information security management systems - Requirements (ISO/IEC 27001:2013 including Cor 1:2014 and Cor 2:2015); German version EN ISO/IEC 27001:2017
信息安全风险 相关方 |
2017-06 德国标准化学会 |
| DIN EN ISO/IEC 27001:2023 规范标准 |
信息安全、网络安全和隐私保护 信息安全管理体系 要求(ISO/IEC 27001:2022) Information security, cybersecurity and privacy protection - Information security management systems - Requirements (ISO/IEC 27001:2022); German and English version prEN ISO/IEC 27001:2023
信息安全政策 信息安全风险 |
2023-04-01 德国标准化学会 |
| DIN EN ISO/IEC 27001:2023-04 |
信息安全、网络安全和隐私保护 - 信息安全管理体系 - 要求(ISO/IEC 27001:2022) Information security, cybersecurity and privacy protection - Information security management systems - Requirements (ISO/IEC 27001:2022); German and English version prEN ISO/IEC 27001:2023 / Note: Date of issue 2023-03-17*Intended as replacement for DI...
信息安全风险 |
2023-04 德国标准化学会 |
| DIN EN ISO/IEC 27001:2024 |
信息安全、网络安全和隐私保护 信息安全管理体系 要求(ISO/IEC 27001:2022) Information security, cybersecurity and privacy protection - Information security management systems - Requirements (ISO/IEC 27001:2022)
信息安全政策 信息安全风险 |
2024-01-01 德国标准化学会 |
| DIN EN ISO/IEC 27001:2024-01 |
信息安全、网络安全和隐私保护 信息安全管理体系 要求(ISO/IEC 27001:2022) Information security, cybersecurity and privacy protection - Information security management systems - Requirements (ISO/IEC 27001:2022); German version EN ISO/IEC 27001:2023
信息安全政策 信息安全风险 |
2024-01 德国标准化学会 |
| DIN EN ISO/IEC 27006:2020 规范标准 |
信息技术 安全技术 对提供信息安全管理系统审计和认证的机构的要求(ISO/IEC 27006:2015,包括 Amd.1:2020) Information technology - Security techniques - Requirements for bodies providing audit and certification of information security management systems (ISO/IEC 27006:2015 including Amd.1:2020); German and English version prEN ISO/IEC 27006:2020
审核 |
2020-08-01 德国标准化学会 |
| DIN EN ISO/IEC 27007:2019 指南标准 |
信息技术-安全技术-信息安全管理体系审核指南(ISO/IEC 27007:2017) Information technology - Security techniques - Guidelines for information security management systems auditing (ISO/IEC 27007:2017); German and English version prEN ISO/IEC 27007:2019
审核 审核员 |
2019-12-01 德国标准化学会 |
| DIN ISO IEC 27009 E:2021-10 规范标准 |
信息技术 IT 安全过程 专用领域的ISO/IEC27001应用 要求 Information Technology - ISO/IEC 27001 Application Requirements for IT Security Processes
控制措施 |
2021-10 德国标准化学会 |
| DIN ISO/IEC 27000:2011 术语 |
信息技术.安全技术.信息安全管理系统.总论和词汇(ISO/IEC 27000-2009) Information technology - Security techniques - Information security management systems - Overview and vocabulary (ISO/IEC 27000:2009)
信息安全管理 |
2011-07 德国标准化学会 |
| ETSI TR 101 533-2 V1.3.1 (2012-04)-2012 指南标准 |
电子签名和基础设施 (ESI) 数据保存系统安全 第 2 部分:评估员指南 Electronic Signatures and Infrastructures (ESI); Data Preservation Systems Security; Part 2: Guidelines for Assessors
评估人员 |
2012-04-01 欧洲电信标准协会 |
| ETSI TS 101 533-1 V1.2.1 (2011-12)-2011 规范标准 |
电子签名和基础设施(ESI) 数据保存系统安全 第 1 部分:实施和管理要求 Electronic Signatures and Infrastructures (ESI); Data Preservation Systems Security; Part 1: Requirements for Implementation and Management
|
2011-12-01 欧洲电信标准协会 |
| ETSI TS 101 533-1 V1.3.1 (2012-04)-2012 规范标准 |
电子签名和基础设施(ESI) 数据保存系统安全 第 1 部分:实施和管理要求 Electronic Signatures and Infrastructures (ESI); Data Preservation Systems Security; Part 1: Requirements for Implementation and Management
|
2012-04-01 欧洲电信标准协会 |
| ETSI TS 102 640-3 V1.1.1 (2008-10)-2008 规范 |
电子签名和基础设施(ESI) 注册电子邮件(REM) 架构、格式和策略 第 3 部分:REM 管理域的信息安全策略要求 Electronic Signatures and Infrastructures (ESI); Registered Electronic Mail (REM); Architecture, Formats and Policies; Part 3: Information Security Policy Requirements for REM Management Domains
|
2008-10-01 欧洲电信标准协会 |
| ETSI TS 102 640-3 V2.1.1 (2010-01)-2010 规范标准 |
电子签名和基础设施(ESI) 注册电子邮件(REM) 第 3 部分:REM 管理域的信息安全策略要求 Electronic Signatures and Infrastructures (ESI); Registered Electronic Mail (REM); Part 3: Information Security Policy Requirements for REM Management Domains
注册电子邮件 |
2010-01-01 欧洲电信标准协会 |
| ETSI TS 102 640-3-2011 规范 |
电子签名和基础结构(ESI).注册电子邮件(REM).第3部分:REM管理域信息安全政策要求(版本2.1.2) Electronic Signatures and Infrastructures (ESI); Registered Electronic Mail (REM); Part 3: Information Security Policy Requirements for REM Management Domains (V2.1.2)
|
2011-09-01 欧洲电信标准协会 |
| GB 44495-2024 |
Technical requirements for vehicle information security
汽车 车辆制造商 |
2024-08-23 国家市场监督管理总局 |
| GB/T 22080-2016 规范 |
Information technology.Security techniques.Information security management systems.Requirements
|
2016-08-29 国家市场监督管理总局 |
| GB/T 22080-2025 规范标准 |
Cybersecurity Technology Information Security Management System Requirements
信息安全控制 信息安全风险 |
2025-06-30 国家市场监督管理总局 |
| GB/T 25067-2020 规范 |
Information technology—Security techniques—Requirements for bodies providing audit and certification of information security management systems
|
2020-04-28 国家市场监督管理总局 |
| GB/T 25068.2-2020 规范/指南 |
信息技术 安全技术 网络安全 第2部分:网络安全设计和实现指南 Information technology—Security techniques—Network security—Part 2: Guidelines for the design and implementation of network security
|
2020-11-19 国家市场监督管理总局 |
| GB/T 28450-2020 指南标准 |
Information technology—Security techniques—Guidelines for information security management systems auditing
|
2020-12-14 国家市场监督管理总局 |
| GB/T 29246-2017 术语 |
Information technology—Security techniques—Information security management systems—Overview and vocabulary
|
2017-12-29 国家市场监督管理总局 |
| GB/T 29246-2023 术语标准 |
Information security technology—Information security management systems—Overview and vocabulary
|
2023-12-28 国家市场监督管理总局 |
| GB/T 31497-2024 指南标准 |
Information Technology Security Technology Information Security Management Monitoring, Measurement, Analysis and Evaluation
|
2024-03-15 国家市场监督管理总局 |
| GB/T 32920-2023 指南标准 |
Information Security Technology Information Security Management for Inter-industry and Inter-Organizational Communications
敏感信息 |
2023-05-23 国家市场监督管理总局 |
| GB/T 38631-2020 规范 |
Information technology—Security techniques—Sector-specific application of GB/T 22080—Requirements
|
2020-04-28 国家市场监督管理总局 |
| GJB 7249-2011 规范 |
Requirements for information security management systems
|
2011-01-20 国家军用标准-总装备部 |
| GOST R ISO/IEC 27000-2012 术语 |
Information technology. Security techniques. Information security management systems. Overview and vocabulary
信息安全风险 |
2012 俄罗斯标准局 |
| GSO ISO/IEC 27001:2025 |
Information security, cybersecurity and privacy protection — Information security management systems — Requirements
信息安全政策 信息安全风险 |
2025 海湾阿拉伯国家合作委员会标准组织 |
| HB 248-2001 指南标准 |
Experience in implementing information security management systems
信息安全管理 |
2001 澳大利亚标准协会 |
| IECQ OD 27001-2019 规范 |
ISO/IEC 27001在颁发IECQ ISMS批准过程认证中的应用 Application of ISO/IEC 27001 for issuing IECQ ISMS approved process certification
|
2019-06-01 国际电工委员会 |
| IRAM-ISO-IEC 27001:2026 |
信息安全、网络安全与隐私保护 信息安全管理体系 要求(ISO/IEC 27001:2022, Amd.1:2024, IDT) Information security, cybersecurity and privacy protection. Information security management systems - Requirements.
信息安全政策 信息安全风险 |
2026-03-09 阿根廷标准化研究所 |
| IRAM-ISO-IEC 27006:2014 规范 |
Information technology. Security techniques. Requirements for bodies providing audit and certification of information security management systems.
审核员 |
2014-11-12 阿根廷标准化研究所 |
| IRAM-ISO-IEC 27007:2014 指南标准 |
Information technology. Security techniques. Guidelines for information security management systems auditing.
审计 审计员 |
2014-05-07 阿根廷标准化研究所 |
| ISO/IEC 27001:2013 规范标准 |
Information technology.Security techniques.Information security management systems.Requirements
信息安全控制 信息安全风险 |
2013-10-01 国际标准化组织 |
| ISO/IEC 27001:2022 规范 |
Information security, cybersecurity and privacy protection - Information security management systems - Requirements
|
2022-10-25 国际标准化组织 |
| ISO/IEC 27003:2017 指南标准 |
Information technology - Security techniques - Information security management systems - Guidance
|
2017-03 国际标准化组织 |
| ISO/IEC 27004:2016 指南标准 |
Information technology - Security techniques - Information security management - Monitoring, measurement, analysis and evaluation
|
2016-12 国际标准化组织 |
| ISO/IEC TR 38505-2:2018 规范/指南标准 |
信息技术IT治理数据治理第2部分:ISO/IEC 38505-1对数据管理的影响 Information technology - Governance of IT - Governance of data - Part 2: Implications of ISO/IEC 38505-1 for data management
数据治理 |
2018-05-16 国际标准化组织 |
| ISO/TR 11633-2:2009 指南标准 |
保健信息学.医疗美利体育官网首页网址及医疗信息系统的远程维护用信息安全管理.第2部分:信息安全管理系统的安装启用(ISMS) Health informatics - Information security management for remote maintenance of medical devices and medical information systems - Part 2: Implementation of an information security management system (ISMS)
|
2009-11 国际标准化组织 |
| ITU-T X.1052-2011 规范 |
Information security management framework
资产管理 |
2011-05-01 国际电信联盟 |
| ITU-T X.1054-2021 指南标准 |
Information security, cybersecurity and privacy protection – Governance of information security
治理机构 |
2021-04-01 国际电信联盟 |
| ITU-T X.1208-2014 指南标准 |
提高电信/信息和通信技术使用信心和安全性的网络安全风险指标(第 17 研究组) A cybersecurity indicator of risk to enhance confidence and security in the use of telecommunication/information and communication technologies (Study Group 17)
|
2014-01-01 国际电信联盟 |
| JIS Q 27001:2023 规范 |
Information security, cybersecurity and privacy protection -- Information security management systems -- Requirements
利益相关者 风险管理流程 |
2006-05-20 日本工业标准调查会 |
| JIS Q 27006:2018 规范 |
情報技術―セキュリティ技術―情報セキュリティマネジメントシステムの審査及び認証を行う機関に対する要求事項 Information technology -- Security techniques -- Requirements for bodies providing audit and certification of information security management systems
审核 |
2018-03-20 日本工业标准调查会 |
| LST EN 16495:2019 规范 |
Air Traffic Management - Information security for organisations supporting civil aviation operations
信任 空中交通管理 |
2019-09-30 立陶宛标准局 |
| LST EN ISO/IEC 27000:2020 术语 |
信息技术 安全方法 信息安全管理体系 概述与术语(ISO/IEC 27000:2018) Information technology - Security techniques - Information security management systems - Overview and vocabulary (ISO/IEC 27000:2018)
信息 |
2020-04-30 立陶宛标准局 |
| LST EN ISO/IEC 27001:2023 |
信息安全、网络安全与隐私保护 信息安全管理体系 要求(ISO/IEC 27001:2022) Information security, cybersecurity and privacy protection - Information security management systems - Requirements (ISO/IEC 27001:2022)
信息安全政策 信息安全风险 |
2023-09-29 立陶宛标准局 |
| LST ISO/IEC 27004:2024 指南标准 |
信息技术 安全技术 信息安全治理 监测、测量、分析与评价(ISO/IEC 27004:2016 等同采用) Information technology — Security techniques — Information security management — Monitoring, measurement, analysis and evaluation (ISO/IEC 27004:2016, identical)
|
2024-05-31 立陶宛标准局 |
| LST ISO/IEC TS 27008:2024 指南标准 |
信息技术 安全技术 信息安全控制评估指南 (ISO/IEC TS 27008:2019 等同采用) Information technology — Security techniques — Guidelines for the assessment of information security controls (ISO/IEC TS 27008:2019, identical)
|
2024-04-30 立陶宛标准局 |
| MS ISO/IEC 27001:2013 规范 |
信息技术 安全技术 信息安全管理系统 要求(第一次修订)(ISO/IEC 27001:2013 IDT)(马来西亚标准局于2014年发布) Information technology- Security techniques - Information security management systems - Requirements (First revision) (ISO/IEC 27001:2013, IDT) (Published by STANDARDS MALAYSIA in 2014)
信息安全风险 相关方 |
2019-03-05 马来西亚标准 |
| MS ISO/IEC 27002:2013 规范 |
信息技术 安全技术 信息安全控制实践准则 (第一版) (ISO/IEC 27002:2013, IDT) (马来西亚标准局2014年发布) Information technology - Security techniques - Code of practice for information security controls (First revision) (ISO/IEC 27002:2013, IDT) (Published by STANDARDS MALAYSIA in 2014)
信息安全控制 信息安全风险 |
2019-03-05 马来西亚标准 |
| MS ISO/IEC 27003:2014 指南标准 |
信息技术 安全技术 信息安全管理体系实施指南(ISO/IEC 27003:2010, IDT) Information technology - Security techniques - Information security management system implementation guidance (ISO/IEC 27003:2010, IDT)
控制措施 |
2019-03-05 马来西亚标准 |
| NF EN ISO/IEC 27001:2023 |
Information security, cybersecurity and privacy protection - Information security management systems - Requirements
信息安全风险 |
2023-07-01 法国标准化协会 |
| NF ISO/IEC 27001:2023 |
Information security, cybersecurity and privacy - Information security management systems - Requirements
信息安全风险 |
2023-01-25 法国标准化协会 |
| NF Z74-221*NF EN ISO/IEC 27001:2023 |
Information security, cybersecurity and privacy protection - Information security management systems - Requirements
信息安全风险 |
2023-07-26 法国标准化协会 |
| PD 3001:2002 指南标准 |
Guidance requirements for certification of BS 7799-2
适用性声明 |
2002-01-01 英国标准学会 |
| PD 3002:2002 指南标准 |
Guide to BS 7799 Risk Assessment
风险处理 |
2002-01-01 英国标准学会 |
| PD 3003:2002 指南标准 |
Are you ready for a BS 7799 Part 2 Audit?
适用性声明 |
2002-01-01 英国标准学会 |
| PD 3004:2002 指南标准 |
Guide to the implementation and auditing of BS 7799 controls
审计 |
2002-01-01 英国标准学会 |
| PD ISO/IEC TR 20000-7:2019 指南标准 |
信息技术 服务管理 ISO/IEC 20000-1:2018 与 ISO 9001:2015 和 ISO/IEC 27001:2013 的整合和关联指南 Information technology. Service management. Guidance on the integration and correlation of ISO/IEC 20000-1:2018 to ISO 9001:2015 and ISO/IEC 27001:2013
服务管理系统 |
2019-07-22 英国标准学会 |
| PD ISO/IEC TR 27023:2015 指南标准 |
信息技术 技术保障 映射 ISO/IEC 27001 和 ISO/IEC 27002 的修订版 Information technology. Security techniques. Mapping the revised editions of ISO/IEC 27001 and ISO/IEC 27002
信息安全控制 信息安全风险 |
2015-07-31 英国标准学会 |
| PD ISO/IEC TR 27103:2018 指南标准 |
Information technology. Security techniques. Cybersecurity and ISO and IEC Standards
|
2018-03-05 英国标准学会 |
| SIS-ISO/IEC TS 27022:2024 指南标准 |
Information technology — Guidance on information security management system processes (ISO/IEC TS 27022:2021, IDT)
过程参考模型 |
2024 瑞典标准研究所 |
| SS 627799-2:2003 规范 |
Information security management systems - Specification with guidance for use
过程方法 |
2003 瑞典标准研究所 |
| SS-EN 17926:2023 规范标准 |
隐私信息管理系统符合ISO/IEC 27701 在欧洲地区背景下的改进 Privacy Information Management System per ISO/IEC 27701 - Refinements in European context
个人身份信息 隐私信息管理体系 |
2023 瑞典标准研究所 |
| SS-EN ISO 27799:2008 指南标准 |
健康信息学 使用 ISO/IEC 27002(ISO 27799:2008)进行健康信息安全管理 Health informatics - Information security management in health using ISO/IEC 27002 (ISO 27799:2008)
个人健康信息 健康信息学 |
2008 瑞典标准研究所 |
| SS-EN ISO/IEC 27000:2017 指南 |
信息技术 安全技术 信息安全管理系统 概述和词汇(ISO/IEC 27000:2016) Information technology - Security techniques - Information security management systems - Overview and vocabulary (ISO/IEC 27000:2016)
|
2017 瑞典标准研究所 |
| SS-EN ISO/IEC 27000:2020 术语标准 |
信息技术 安全技术 信息安全管理体系 概览和词汇(ISO/IEC 27000:2018) Information technology - Security techniques - Information security management systems - Overview and vocabulary (ISO/IEC 27000:2018)
|
2020 瑞典标准研究所 |
| SS-EN ISO/IEC 27001:2023 |
信息安全、网络安全和隐私保护 信息安全管理系统 要求(ISO/IEC 27001:2022) Information security, cybersecurity and privacy protection - Information security management systems - Requirements (ISO/IEC 27001:2022)
信息安全风险 |
2023 瑞典标准研究所 |
| SS-EN ISO/IEC 27006:2020 规范标准 |
信息技术 安全技术 提供信息安全管理系统审核和认证机构的要求(ISO/IEC 27006:2015 包括Amd 1:2020) Information technology - Security techniques - Requirements for bodies providing audit and certification of information security management systems (ISO/IEC 27006:2015, including Amd 1:2020)
认可 |
2020-12-02 瑞典标准研究所 |
| SS-ISO/IEC 27001:2022 |
信息技术 cybersecurity 和隐私保护 信息安全管理体系 要求(ISO/IEC 27001:2022 等同采用) Information technology - Cybersecurity and privacy protection - Information security management systems - Requirements (ISO/IEC 27001:2022, IDT)
|
2022 瑞典标准研究所 |
| SS-ISO/IEC 27002:2005 指南标准 |
信息技术 安全技术 信息安全管理体系实用规范(等同采用ISO/IEC 17799:2005和其第一修正案Cor 1:2007) Information technology - Security techniques - Code of practice for information security management (ISO/IEC 17799:2005 + Cor 1:2007, IDT)
|
2005 瑞典标准研究所 |
| SS-ISO/IEC 27003:2018 指南 |
信息技术 安全技术 信息安全管理体系 指南(ISO/IEC 27003:2017 等同采用) Information technology - Security techniques - Information security management system - Guidance (ISO/IEC 27003:2017, IDT)
信息 信息资产 |
2018 瑞典标准研究所 |
| SS-ISO/IEC 27004:2017 指南标准 |
信息技术 安全技术 信息安全管理体系 监控、测量、分析和评估(等同ISO/IEC 27004:2016) Information technology - Security techniques - Information security management - Monitoring, measurement, analysis and evaluation (ISO/IEC 27004:2016, IDT)
|
2017 瑞典标准研究所 |
| SS-ISO/IEC 27006:2015 试验 |
信息技术 安全技术 信息安全管理体系审核和认证机构的要求(ISO/IEC 27006:2015 等同采用) Information technology - Security techniques - Requirements for bodies providing audit and certification of information security management systems (ISO/IEC 27006:2015, IDT)
审核员 |
2015 瑞典标准研究所 |
| SS-ISO/IEC 27007:2018 指南标准 |
信息技术 安全技术 信息安全管理系统审计指南(ISO 27007:2017 IDT) Information technology - Security techniques - Guidelines for information security management systems auditing (ISO 27007:2017, IDT)
审核 审核员 |
2018 瑞典标准研究所 |
| SS-ISO/IEC 27011:2024 |
信息安全、网络安全和隐私保护 依据电信组织的ISO/IEC 27002的安全控制措施 (ISO/IEC 27011:2024, 等同采用) Information security, cybersecurity and privacy protection — Information security controls based on ISO/IEC 27002 for telecommunications organizations, (ISO/IEC 27011:2024, IDT)
电信组织 |
2024 瑞典标准研究所 |
| SS-ISO/IEC 27014:2021 指南标准 |
信息安全、网络安全和隐私保护 信息安全治理(ISO/IEC 27014:2020 等同采用) Information security, cybersecurity and privacy protection — Governance of information security (ISO/IEC 27014:2020, IDT)
治理机构 |
2021 瑞典标准研究所 |
| SS-ISO/IEC 27050-3:2021 规范 |
信息技术 电子发现 第3部分:电子发现的行为守则(ISO/IEC 27050-3:2020 等同采用) Information technology — Electronic discovery — Part 3: Code of practice for electronic discovery (ISO/IEC 27050-3:2020, IDT)
电子发现 电子存储信息 |
2021 瑞典标准研究所 |
| TR 23-03 规范 |
Criteria for Certification Body Accreditation in the Scope of Information Security Management Systems (ISMS)
南非国家认可系统 |
2022-04-28 南非标准局 |
| UNE-EN ISO/IEC 27001:2017 规范标准 |
信息技术 安全技术 信息安全管理系统 要求(ISO/IEC 27001:2013 包括 Cor 1:2014 和 Cor 2:2015) Information technology - Security techniques - Information security management systems - Requirements (ISO/IEC 27001:2013 including Cor 1:2014 and Cor 2:2015)
信息安全政策 信息安全风险 |
2017-05-24 西班牙标准化协会 |
| UNE-EN ISO/IEC 27001:2023 |
信息安全、网络安全和隐私保护 信息安全管理体系 要求(ISO/IEC 27001:2022) Information security, cybersecurity and privacy protection - Information security management systems - Requirements (ISO/IEC 27001:2022)
信息安全风险 |
2023-09-13 西班牙标准化协会 |
| UNE-EN ISO/IEC 27006:2020 规范标准 |
信息技术 安全技术 对提供信息安全管理体系审核和认证的机构的要求 Information technology - Security techniques - Requirements for bodies providing audit and certification of information security management systems (ISO/IEC 27006:2015, including Amd 1:2020) (Endorsed by Asociación Espa?ola de Normalización in Janua...
审核团队 |
2021-01-01 西班牙标准化协会 |
| UNE-ISO/IEC 27001:2023 |
Information security, cybersecurity and privacy protection. Information security management systems. Requirements
信息安全风险 |
2023-05-17 西班牙标准化协会 |
| UNI CEI EN ISO/IEC 27001:2024 |
Information security, cybersecurity and privacy protection - Information security management systems - Requirements
信息安全政策 信息安全风险 |
2024-01-25 意大利统一标准化组织 |
| VDE V 0832-700-2019 规范标准 |
道路交通信号系统 第 700 部分:城市道路交通中交通控制和引导系统的行业特定安全标准 Road traffic signal systems - Part 700: Industry-specific security standard for traffic control and guidance systems in urban road traffic
|
2019-03-01 德国电气,电子和信息技术协会 |
Copyright ?2007-2026 ANTPEDIA, All Rights Reserved
京ICP备07018254号 京公网安备1101085018 电信与信息服务业务经营许可证:京ICP证110310号
页面更新时间: 2026-06-01 15:20