标准编号:ISO/IEC 27031:2011
中文名称:信息技术 安全技术 业务连续的信息和通信技术准备就绪指南
英文名称:Information technology — Security techniques — Guidelines for information and communication technology readiness for business continuity
发布日期:2011-03
标准范围
This International Standard describes the concepts and principles of information and communicationtechnology (ICT) readiness for business continuity, and provides a framework of methods and processes toidentify and specify all aspects (such as performance criteria, design, and implementation) for improving anorganization's ICT readiness to ensure business continuity. It applies to any organization (private,governmental, and non-governmental, irrespective of size) developing its ICT readiness for businesscontinuity (IRBC) program, and requiring its ICT services/infrastructures to be ready to support businessoperations in the event of emerging events and incidents, and related disruptions, that could affect continuity(including security) of critical business functions. It also enables an organization to measure performanceparameters that correlate to its IRBC in a consistent and recognized manner.The scope of this International Standard encompasses all events and incidents (including security related) thatcould have an impact on ICT infrastructure and systems. It includes and extends the practices of informationsecurity incident handling and management and ICT readiness planning and services.