ISO/IEC 27000:2009 Addresses Information Security Management Systems
June 4, 2009 // Published as a news service by IHS
The International Organization for Standardization (ISO) issued ISO/International Electrotechnical Commission (IEC) 27000:2009 - Information technology - Security techniques - Information security management systems - Overview and vocabulary, which is designed to help organizations improve protection of their information assets.
Applicable to organizations such as commercial enterprises, government agencies and nonprofit organizations, ISO/IEC 27000:2009 supplements the ISO/IEC 27000 family of standards by providing an introduction to information security management and defining related terms.
An organization's information assets are dependent upon information and communications technology, according to ISO. The technology assists in facilitating the creation, processing, storing, transmitting, protection and destruction of information.
As the extent of the global business environment expands, so does the requirement to protect information as it is exposed to a wider variety of threats and vulnerabilities, said ISO experts.
ISO/IEC 27000:2009 was developed by Joint Technical Committee ISO/IEC JTC 1, Information technology, Subcommittee SC 27, IT Security techniques.
Source: International Organization for Standardization (ISO).