10.07.2015 Views

Information Security Management: Understanding ISO 17799 - GTA

Information Security Management: Understanding ISO 17799 - GTA

Information Security Management: Understanding ISO 17799 - GTA

SHOW MORE
SHOW LESS
  • No tags were found...

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Eradicate the intruderRecover from the intrusionLearn from the incidentMethodologies include processes to:Identify, escalate, and de-escalate security eventsAssess organizational securityMaintain organizational securityExternal Liaisons- established with local law enforcement agencies, as well as with legal and publicrelations entities.<strong>Security</strong> MaintenanceExploit Tracking - qualified specialists in different organizational networking elements are tasked withtracking relevant exploits and reporting information of concern to the <strong>Information</strong> System <strong>Security</strong> Officer.Change Control Board – chartered and empowered to manage change. The change control process includeschange submission request and evaluation, as well as recovery and back-out procedures. In addition, aDocument Control plan is initiated to control the ISMS documentation.<strong>Security</strong> InfrastructurePolicies – established to express conceptual information security organizational goals in the <strong>Information</strong><strong>Security</strong> Policy.Standards – established to support implementation of <strong>Information</strong> <strong>Security</strong> Policy. Standards can address:Personnel securityEmployee conductData classificationData labelingData handlingData transmissionData encryptionVPNsData recoveryData routingAccess controlFirewall standardNetwork securityNetwork applicationData switchingLoggingAsset managementAlarmPhysical securityInfo <strong>Security</strong> Mgmt.: <strong>ISO</strong> <strong>17799</strong> October 2001 INS Whitepaper • 13

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!