ГОСТ Р ИСО/МЭК 27013-2014. Национальный стандарт Российской Федерации. Информационная технология. Методы и средства обеспечения безопасности. Руководство по совместному использованию стандартов ИСО/МЭК 27001 и ИСО/МЭК 20000-1
БИБЛИОГРАФИЯ
[1] | ISO 9000, Quality management systems - Fundamentals and vocabulary |
[2] | ISO 9004, Quality management systems - Guidelines for performance improvements |
[3] | ISO/IEC TS 15504-8, Information technology - Service management - Part 8: Process assessment mode for service management (under development) |
[4] | ISO 19011, Quality management systems - Guidelines for quality and/or environmental management systems auditing |
[5] | ISO/IEC 20000-2, Information technology - Service management - Part 2: Guidance on the application of service management systems |
[6] | ISO/IEC 20000-3, Information technology - Service management - Part 3: Guidance on scope definition and applicability for ISO/IEC 20000-1 |
[7] | ISO/IEC TR 20000-4, Information technology - Service management - Part 4: Process reference model for service management |
[8] | ISO/IEC TR 20000-5, Information technology - Service management - Part 5: Exemplar implementation plan for ISO/IEC 20000-1 |
[9] | ISO/IEC TR 90006, Information technology - Guidelines for the application of ISO 9001:2008 to IT service management and its integration with ISO/IEC 20000-1:2011 |
[10] | ISO/IEC 27002, Information technology - Security techniques - Information security management systems - Code of practice for information security controls (under revision) |
[11] | ISO/IEC 27003, Information technology - Security techniques - Information security management systems - Information security management system implementation guidance |
[12] | ISO/IEC 27004, Information technology - Security techniques - Information security management systems - Information security management measurements |
[13] | ISO/IEC 27005, Information technology - Security techniques - Information security management systems - Information security risk management |
[14] | ISO/IEC 27006, Information technology - Security techniques - Information security management systems - Requirements for bodies providing audit and certification of information security management systems |
[15] | ISO/IEC 27007, Information technology - Security techniques - Information security management systems - Guidelines for information security management systems auditing |
[16] | ISO/IEC TR 27008, Information technology - Security techniques - Guidelines for auditors on information security controls |
[17] | ISO/IEC 27010, Information technology - Security techniques - Information security management systems - Information security management for inter-sector and inter-organizational communications |
[18] | ISO/IEC 27014, Information technology - Security techniques - Information security management systems - Governance of information security |
[19] | ISO 31000, Risk management - Principles and Guidelines on Implementation |
УДК 006.034: 004.056: 004.057.2 | ОКС 03.080.99 35.020; 35.040; |
Ключевые слова: информационная технология, информационная безопасность, мера и средство контроля и управления, система менеджмента информационной безопасности, менеджмент услуг, интегрированная система менеджмента |