Monday, May 25, 2009

Information Security Standards

Information all across the organisations has now been travelling based on some sorts of standards as we called in last post as BS7799 or ISO standards.I will not be discussing these details but a short note will justify this post.
BS7799
Orginated form British Standard Institute in 1995, it was thought to have integrated best practices in information security and a code of information security management.This got revised in 1999 with more revisions and latest be in June 2005 further renaming to ISO/IEC 17799 or ISO 27002

Outlines of BS 7799 are-----------------------
1. Policy
2. Organizational Information Protection
3. Control and sensitivity of assets
4. People Issues
5. Physical Protection
6. System and Infrastructure Management
7. System access control
8. Systems development and maintenance
9. Business continuity planning
10. Compliance

No comments: