This International Standard provides guidelines for information security risk management.
This International Standard supports the general concepts specified in ISO/IEC 27001 and is designed to
assist the satisfactory implementation of information security based on a risk management approach.
Knowledge of the concepts, models, processes and terminologies described in ISO/IEC 27001 and
ISO/IEC 27002 is important for a complete understanding of this International Standard.
This International Standard is applicable to all types of organizations (e.g. commercial enterprises,
government agencies, non-profit organizations) which intend to manage risks that could compromise the
organization's information security.
| Edition : | 2nd |
| File Size : | 1
file
, 1.3 MB |
| Number of Pages : | 86 |
| Part of : | CAN/CSA-ISO/IEC INFORMATION SECURITY PACKAGE |
| Product Code(s) : | 2421445, 2421445 |
| Published : | 12/01/2011 |