ISO/IEC 27005:2011-EN

上传者: downk | 上传时间: 2021-06-23 16:00:18 | 文件大小: 854KB | 文件类型: ZIP
ISO/IEC 27005:2011英文版BS|So/EC27005:201
so/EC27005:2011E
9.2 Risk modification
22
9. 3 Risk retention
面BB1面面
9.4
Risk avoidance
9.5 Risk sharing
10 Information security risk acceptance..
24
11
Information security risk communication and consultation
24
12
Information security ris k monitoring and review
25
12.1 Monitoring and review of risk factors
25
12.2 Risk management monitoring, review and improvement.....
26
Annex A(informative )Defining the scope and boundaries of the information security risk
management process
A1 Study of the organization..
28
A2 List of the constraints affecting the organization..
A3 List of the legislative and regulatory references applicable to the organization
31
A.4
List of the constraints affecting the scope
Annex B (informative) Identification and valuation of assets and impact assessment
量国
面面国
33
B. 1 Examples of asset identification
33
B.1.1 The identification of primary assets
33
0m-0sz
B12 List and description of supporting assets……………
34
B.2 Asset va| uation.…
38
B3 Impact assessment............
n41
Annex C (informative)Examples of typical threats
42
Annex D (informative) Vulnerabilities and methods for vulnerability assessment.....
D1 Examples of vulnerabilities
45
D2 Methods for assessment of technical vulnerabilities
n…48
Annex E(informative)Information security risk assessment approaches
50
E.1 High-level information security risk assessment.………
50
E2 Detailed information security risk assessment...-.............
E22 Example2 Ranking of Threats by Measures of RisK.………
51
E.2.1 Example 1 Matrix with predefined values
52
E.2.3 Example 3 Assessing a value for the likelihood and the possible consequences of risks... 54
Annex F(informative) Constraints for risk modification..

56
Annex G(informative) Differences in definitions between ISO/EC 27005: 2008 and ISo/EC
27005:2011
58
Bibliography
68
O ISO/EC 2011-All rights reserved

BS ISO/EC27005:2011
ISO/EC270

文件下载

资源详情

[{"title":"( 1 个子文件 854KB ) ISO/IEC 27005:2011-EN","children":[{"title":"ISOIEC 270052011-EN_1624422614","children":[{"title":"ISOIEC 270052011-EN.pdf <span style='color:#111;'> 939.46KB </span>","children":null,"spread":false}],"spread":true}],"spread":true}]

评论信息

免责申明

【只为小站】的资源来自网友分享,仅供学习研究,请务必在下载后24小时内给予删除,不得用于其他任何用途,否则后果自负。基于互联网的特殊性,【只为小站】 无法对用户传输的作品、信息、内容的权属或合法性、合规性、真实性、科学性、完整权、有效性等进行实质审查;无论 【只为小站】 经营者是否已进行审查,用户均应自行承担因其传输的作品、信息、内容而可能或已经产生的侵权或权属纠纷等法律责任。
本站所有资源不代表本站的观点或立场,基于网友分享,根据中国法律《信息网络传播权保护条例》第二十二条之规定,若资源存在侵权或相关问题请联系本站客服人员,zhiweidada#qq.com,请把#换成@,本站将给予最大的支持与配合,做到及时反馈和处理。关于更多版权及免责申明参见 版权及免责申明