ISO/IEC 17799
Home > Software Quality Glossary > Definition - ISO/IEC 17799
EMAIL THIS
Glossary - powered by WhatIs.com
 BROWSE ALPHABETICALLY:    A B C D E F G H I J K L M N O P Q R S T U V W X Y Z #    
Search for: in Full Target Search with Google

ISO/IEC 17799
ISO/IEC 17799: Code of Practice for Information Security Management is a generic set of best practices for the security of information systems. Considered the foremost security specification document in the world, the code of practice includes guidelines for all organizations, no matter what their size or purpose. 17799 was originally published in the United Kingdom as DT Code of Practice, and then later as BS 7799.

The ISO/IEC 17799 details 127 security measures, organized into 10 sections; these specify best practices for: business continuity planning; system access control; system development and maintenance; physical and environmental security; compliance; personnel security; security organization; computer and operations management; asset classification and control; and security policies. The purpose of the code of practice is to be as comprehensive as possible, covering practices that are applicable to a broad range of endeavors. The document suggests that particular organizations can benefit from selecting those specifications that apply to them.

The document is currently being revised to provide sufficient detail to enable the development of a security management system.

Read more about it:
>>  The ISO Web site has more information about 17799.
>>  Gamma Security Systems explains "How 7799 Works."
>>  NIST provides a FAQ list about ISO/IEC 17799.

Last updated on: Nov 05, 2007

WHITE PAPERS  
SOAPSimulator™: Accelerate, Integrate and Optimize Your SOA Projects with SOAP and XML Service Simulation
Crosscheck Networks

Inviting Risk
Information Security Magazine

Role Model
Information Security Magazine

Bitpipe Research Guide: Security
Bitpipe

>> More White Papers
  WHAT'S NEW
 1. Managing performance in the enterprise
 2. Software testing fundamentals
 3. Learning Guide: Debugging & unit testing
 4. .NET Application Security Learning Guide


About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
SEARCH 
TechTarget provides enterprise IT professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective IT purchase decisions and managing their organizations' IT projects - with its network of technology-specific Web sites, events and magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Reprints  |  Site Map




All Rights Reserved, Copyright 2006 - 2008, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts