2009Van Haren Publishing eBooksRequires access

Information Security based on ISO 27001/ISO 27002: A Management Guide - Best Practice

Alan Calder

Open publisher page 11 citations

Abstract

Information is the currency of the information age and in many cases is the most valuable asset possessed by an organization. Information security management is the discipline that focuses on protecting and securing these assets against the threats of natural disasters, fraud and other criminal activity, user error and system failure. This Management Guide provides an overview of the two international information security standards, ISO/IEC 27001 and ISO 27002. These standards provide a basis for implementing information security controls to meet an organisation s own business requirements as well as a set of controls for business relationships with other parties.

About this research paper

What this paper is about

Information is the currency of the information age and in many cases is the most valuable asset possessed by an organization. Information security management is the discipline that focuses on protecting and securing these assets against the threats of natural disasters, fraud and other criminal activity, user error and system failure. This Management Guide provides an overview of the two international information security standards, ISO/IEC 27001 and ISO 27002. These standards provide a basis for implementing information security controls to meet an organisation s own business requirements as well as a set of controls for business relationships with other parties.

Why it matters

OpenAlex reports 11 citations for this work. Citation counts describe recorded attention and do not establish research quality.

Key contribution

A contribution statement is not available in the OpenAlex record.

Method / approach

Method details are not available in the OpenAlex metadata.

Main findings

Findings are not separately available in the OpenAlex metadata.

Limitations

Limitations are not available in the OpenAlex metadata.

Applications

Application details are not available in the OpenAlex metadata.

Available abstract

Information is the currency of the information age and in many cases is the most valuable asset possessed by an organization. Information security management is the discipline that focuses on protecting and securing these assets against the threats of natural disasters, fraud and other criminal activity, user error and system failure. This Management Guide provides an overview of the two international information security standards, ISO/IEC 27001 and ISO 27002. These standards provide a basis for implementing information security controls to meet an organisation s own business requirements as well as a set of controls for business relationships with other parties.

Key concepts: Information security management system, ITIL security management, Standard of Good Practice, Information security management, Certified Information Security Manager, Information security, Business, Asset (computer security)

Related papers

Back to paper searchBrowse research topicsOriginal source
Information Security based on ISO 27001/ISO 27002: A Management Guide - Best Practice — Research Paper | ScholarLens