2009-08-27
By Editor, CIR
UK standards and assessment body, BSI, has published a new standard, BS ISO/IEC 27000:2009, which provides an introduction to information security management systems (ISMS).
Developed by the International Organisation for Standardisation with input from BSI, the standard also provides a description of a 'plan, do, check, act' process, used in the implementation of all management system standards.
An ISMS provides a model for establishing, implementing, operating, monitoring, reviewing, maintaining and improving the protection of information assets. Types of information can include financial information, intellectual property, and employee details, for instance.
Mike Low, director of standards at BSI, said, "All information held and processed by an organisation is subject to threats of attack and natural incidents. ISO 27000 puts the existing family of international information security standards in context and provides an overview of this important area."

![]() | CIR Services Guide 2010 coming soon! MAXIMUM EXPOSURE TO A TARGETED AUDIENCE To feature both online and in print ACT NOW! |
| > Search | > Digital |
| > Update | > Advertise |