标准编号:ISO/IEC TR 27008:2011

中文名称:信息技术 安全技术 信息安全控件审计人员指南

英文名称:Information technology — Security techniques — Guidelines for auditors on information security controls

发布日期:2011-10

标准范围

This Technical Report provides guidance on reviewing the implementation and operation of controls, including technical compliance checking of information system controls, in compliance with an organization's established information security standards.This Technical Report is applicable to all types and sizes of organizations, including public and private companies, government entities, and not-for-profit organizations conducting information security reviews and technical compliance checks. This Technical Report is not intended for management systems audits.

标准预览图

下载信息


立即下载标准文件

大家都在看