ГОСТ Р ИСО/МЭК 27003—2012
Библиография
i
(11ISO 9001:2008,
Quality management systems
—
Requirements
[2]
ISO 14001:2004.
Environmental management systems
—
Requirements with guidance for use
(3]ISO/IEC 15026 (all parts).
Systems and softv/are engineering — Systems and software assurance
[41ISO’IEC 15408-1:2009.
Information technology
—
Security techniques
—
Evaluation criteria for IT security
—
Part 1: Introduction and general model
(5JISOi’IEC 15408-2:2008.
Information technology — Security techniques
—
Evaluation criteria for IT security —
Part 2:
Secur/Гу
functional components
[6JIS04EC 15408-3:2008.
Information technology
—
Security techniques
—
Evaluation criteria for IT security
—
Part 3: Security assurance components
(71 ISOi’IEC TR 15443-1:2005.
Information technology
—
Security techniques
—
A framework for IT security
assurance
—
Part 1: Overview and framework
[8] ISO/IEC TR 15443-2:2005,
Information technology
—
Security techniques
—
A framework for IT security
assurance
—
Part 2: Assurance methods
[9] ISOi’IEC TR 15443-3:2007.
Information technology
—
Security techniques
—
A framework for IT security
assurance
—
Part 3: Analysis of assurance methods
[10]ISO/IEC 15939:2007.
Systems and software engineering
— Ate
asurement process
[11]ISO/IEC 16085:2006. Systems
and software engineering
—
Life cycle processes
—
Risk management
[12]ISO/IEC 16326:2009.
Systems and software engineering
—
Life cycle processes
—
Project management
[13]ISO/IEC 18045:2008,
Information technology — Security techniques
—
Methodology for IT security evaluation
[14]ISO/IEC TR 19791:2006.
Information technology
—
Security techniques — Security assessment ofoperational
systems
[15J ISO/IEC 20000-1:2005.
Information technology
— Service
management
—
Part 1: Specification
[16]ISO/IEC 27001:2005.
Information technology
—
Security techniques
—
Information security management
systems
—
Requirements
[17]ISO/IEC 27004:2009.
Information technology — Security techniques — Information security management
—
Measurement
[18]ISO/IEC 27005:2008.
Information technology
—
Security techniques — Information security risk management
[19]ISO 21500.
Project management
—
Guide to project management2’
[20] ISO/IEC 27006:2007.
Information technology
—
Security techniques — Requirements for bodies providing audit
and certification of information security management systems
1) Будет опубликован.
2>В процессе подготовки.
УДК 004.91:006.354ОКС 35.040
Ключевые слова: система менеджмента информационной безопасности, документальнооформленная про
цедура. инцидент информационной безопасности
Редактор
А. В. Бараидвев
Технический редактор
Е. В. Бвспрозеанная
Корректор В. Г. Г
ришунина
Компьютерная верстка
Т. Ф. Кузнецовой
Сдано и набор 09.09.2014. Подписано а печать 27.11.2014, Формат 60x84% . Бумага офсетная Гарнитура Армал
Печать офсетная. Уел. печ. п. 6,51. Уч.-изд. л. 5,95 Тираж 81 экэ Заи. 1517.
ФГУП «СТАНДАРТИНФОРМ». 123995 Мосаай, Гранатный пер . 4
www.gostinfo.ru
info@gostinfo.ru
Набрано и отпечатано а Калужской типографии стандартов. 248021 Калуга, ул. Московская. 256
ГОСТ Р ИСО/МЭК 2700
3-2012