0%

Book Description

Information is one of your organisation’s most important resources and keeping that information secure is vital to your business. 

An information security management system (ISMS) based on ISO27001/ISO27002 offers a host of benefits:

  • Improved efficiency by having information security systems and procedures in place, enabling you to focus more on your core business.
  • Protects your information assets from a wide range of cyber threats, criminal activity, insider compromise and system failure.
  • Manage your risks systematically and establish plans to eliminate or reduce cyber threats.
  • Enables earlier detection of threats or processing errors, and faster resolution.

This handy pocket guide is an essential overview of two key information security standards that cover the formal requirements (ISO27001:2013) for creating an information security management system (ISMS), and the best-practice recommendations (ISO27002:2013) for those responsible for initiating, implementing or maintaining it.

Table of Contents

  1. Cover
  2. Title
  3. Copyright
  4. Foreword
  5. About the Author
  6. Acknowledgements
  7. Contents
  8. Introduction
  9. Chapter 1: The ISO/IEC 27000 Family of Information Security Standards
  10. Chapter 2: Background to the Standards
  11. Chapter 3: Specification vs Code of Practice
  12. Chapter 4: Certification Process
  13. Chapter 5: The ISMS and ISO27001
  14. Chapter 6: Overview of ISO/IEC 27001:2013
  15. Chapter 7: Overview of ISO/IEC 27002:2013
  16. Chapter 8: Documentation and Records
  17. Chapter 9: Management Responsibility
  18. Chapter 10: Process Approach and the PDCA Cycle
  19. Chapter 11: Context, Policy and Scope
  20. Chapter 12: Risk Assessment
  21. Chapter 13: The Statement of Applicability (SoA)
  22. Chapter 14: Implementation
  23. Chapter 15: Check and Act
  24. Chapter 16: Management Review
  25. Chapter 17: ISO27001 Annex A
  26. ITG Resources
3.129.23.30