标准编号:ISO/IEC 27034-1:2011
中文名称:信息技术 安全技术 应用安全 第1部分:综述和概念
英文名称:Information technology — Security techniques — Application security — Part 1: Overview and concepts
发布日期:2011-11
标准范围
ISO/IEC 27034 provides guidance to assist organizations in integrating security into the processes used for managing their applications.This part of ISO/IEC 27034 presents an overview of application security. It introduces definitions, concepts, principles and processes involved in application security.ISO/IEC 27034 is applicable to in-house developed applications, applications acquired from third parties, and where the development or the operation of the application is outsourced.