資訊安全的問題 - cyli.cgust.edu.twcyli.cgust.edu.tw/ezfiles/20/1020/attach/63/pta_3432_9086727_12672.pdf · 分類及控管 政策及標準 防護 組態 病毒 內容 入侵∕誤用

  • Upload
    others

  • View
    2

  • Download
    0

Embed Size (px)

Citation preview

  • ISO27001

    Agenda

  • /

    ( )

    /

  • ISO27001

    COBIT

    , http:// www.iso.org/

    , , http://www. isaca.org/

    NIST

    BIS Basel II / New Basel Capital Accord

    Electronic Banking Control

    /

    , http://csrc.nist.gov/nistpubs/800 -14.pdf

  • ( )

    ISO 27001

  • ISO 27001

    11 39 133

  • ISO27001

    Agenda

  • (ISMS)

    (Information Security Management System ISMS)

    ISMS BS 7799

    (International Standards Organization

    ISO)

    (British Standards : BS)

  • ISO 27001 / BS 7799

    ISO 27001:2005/BS7799 - 2:2005

    : ( )

    11 39 133

    ISO 27002:2005/BS7799 - 1:2005

    :

  • BS 7799 / ISO/IEC 27001

    1992 1993 1995 1998 1999 2000

    DT

    I -

    DIS

    C

    Ind

    us

    try C

    od

    e o

    f P

    rac

    tic

    e

    BS

    I C

    od

    e o

    f P

    racti

    ce

    BS

    77

    99

    Pa

    rt 1

    : 1

    99

    8

    ISO

    / IE

    C 1

    77

    99

    : 2

    00

    0

    BS

    77

    99

    Pa

    rt 2

    : 1

    99

    9

    2002

    BS

    77

    99

    : 2

    00

    2

    2005

    ISO

    / IE

    C 2

    70

    01 :

    20

    05

    2005

    BS

    77

    99

    : 2

    00

    5

    ISO

    / IE

    C 1

    77

    99

    : 2

    00

    5

    ISO

    / IE

    C 2

    70

    02

    : 2

    00

    5