ISO 27001:2005, formerly BS-7799:2002 part 2 is the international standard for a company to manage it's information security. It sets out how a company should address the requirements of confidentiality, integrity and availability of it's information assets and incorporate this into an Information management security system (ISMS). The standard has only been successfully implemented and certified by a few thousand companies across the globe, though this is now growing rapidly. This is currently being driven typically by two areas of business - the public sector and the financial sector. Both are naturally concerned for the security of their information which may be held by their suppliers and partners. |
|||
ISO 27001 linksTelephone |