This document provides guidelines for information security risk management. It supports the general concepts specified in ISO/IEC 27001 and is designed to assist the satisfactory implementation of information security based on a risk management approach. Knowledge of the concepts, models, processes and terminologies described in ISO/IEC 27001 and ISO/IEC 27002 is important for a complete understanding of this document.
This document is applicable to all types of organisation (e.g. commercial enterprises, government agencies, non-profit organisations) which intend to manage risks that can compromise the organisation’s information security.
Purchase and use of this product is governed by this EULA.