IHS Inc. The Source for Critical Information and Insight
Electronics |  Change  

Go
 
 

Microsoft GFS Earns ISO/IEC 27001:2005 Certification

August 22, 2008 // Published as a news service by IHS

 
Electronics & Telecom Docs
IHS sells a full selection of standards documents & collections from the industry's top organizations.
To learn more, and for a free quote, please complete the form below.
TIA Collection
NEMA Collection
CEA Collection
EIA Collection
ITU Collections
IEEE Collections
EU EMC Collections
IEC Collections
First Name:

Last Name:

Email address:
BSI Management Systems America announced that Microsoft Global Foundation Services (GFS) achieved certification to the international information security standard, International Organization for Standardization (ISO)/International Electrotechnical Commission (IEC) 27001:2005.

The international standard evolved from the British Standard, BSI BS 7799, which was developed by the British Standards Institution (BSI).

ISO/IEC 27001:2005, released in October 2005 as the successor to BSI BS 7799-2, is an internationally recognized standard that identifies, manages and minimizes the range of threats to which information is regularly subjected.

Certification to the ISO/IEC 27001:2005 standard reinforces to customers, through an independent third party, that Microsoft operates an information security management system (ISMS) in accordance with the ISO.

"Microsoft Global Foundation Services has been able to extend the Microsoft Trustworthy Computing concepts from packaged software to protecting online services at global scale," said Charlie McNerney, chief information security officer of Microsoft Global Foundation Services.

"This certification provides external validation that our approach to managing security risk in a global organization is comprehensive and effective, which is important for our business and consumer customers."

As part of the ISO/IEC 27001:2005 process, BSI performed on-site assessments, examined GFS's documented procedures and audited its overall operations. To determine continued compliance with ISO/IEC 27001:2005, BSI will periodically conduct routine surveillance audits of GFS's business operations.

"As the first major online service provider to earn ISO/IEC 27001:2005 certification, Microsoft is further demonstrating a commitment to making its company more secure and securing the information of its customers," said Todd VanderVen, president of BSI Management Systems.

"By formalizing their documentation and processes and using ISO/IEC 27001:2005, Microsoft will be able to improve quality as well as security and continue to raise the bar for the industry, as they have done so well over the years," VanderVen said.

"The GFS team is committed and uses well-organized processes; ISO/IEC 27001:2005 certification can only serve to improve an already industry-leading business that is itself considered a standard that many strive to achieve."

Source: BSI Group.

ELECTRONICS & TELECOM STANDARDS & REGULATIONS NEWS
November 5, 2009
ITU Approves G.hn Standard for Wired Home Networks
The International Telecommunication Union (ITU) approved G.hn, a technical standard for home networking systems and applications. ... more
October 30, 2009
EC Proposes New Uses for Spectrum Freed Up by Digital TV Switch
On Oct. 28, the European Commission (EC) set out plans for a coordinated distribution of newly available radio spectrum to encourage investment ... more
October 30, 2009
IEEE Proposes IMT-Advanced Candidate Based on IEEE 802.16
The Institute of Electrical and Electronics Engineers (IEEE) submitted a candidate radio interface technology for International Mobile Telecommunications ... more
October 23, 2009
ISO 28500:2009 Addresses File Format Standard for Online Data
The International Organization for Standardization (ISO) issued ISO 28500:2009 - Information and documentation - WARC file format, which offers ... more
October 16, 2009
BSI Releases Online Data Protection Tool to Support BS 10012
British Standards Institution (BSI) released an online tool designed to help organizations manage personal information. ... more
Show All..