ISO/IEC 27005:2018

Information technology — Security techniques — Information security risk management

OVERVIEW

This document provides guidelines for information security risk management.

This document supports the general concepts specified in ISO/IEC 27001 and is designed to assist the satisfactory implementation of information security based on a risk management approach.

Knowledge of the concepts, models, processes and terminologies described in ISO/IEC 27001 and ISO/IEC 27002 is important for a complete understanding of this document.

This document is applicable to all types of organizations (e.g. commercial enterprises, government agencies, non-profit organizations) which intend to manage risks that can compromise the organization's information security.

COMMENTS

-

PRODUCT DETAILS

Status Withdrawn - 16 Jul 2024
Edition 2018
No. of Pages 56
ICS Classification 35.030 IT Security
03.100.70 Management systems
Committee ISO/IEC JTC 1/SC 27
Available for Purchase For sale in Singapore only
Adoption IEC