Please select and order
€109.76
excl. VAT plus shipping costs
CONFIGURE NOW
Norm

ÖVE/ÖNORM EN ISO/IEC 27041

Issue date: 2016 12 01

Information technology - Security techniques - Guidance on assuring suitability and adequacy of incident investigative method (ISO/IEC 27041:2015)

This International Standard provides guidance on mechanisms for ensuring that methods and processes used in the investigation of information security incidents are “fit f...
Read more
Valid
Publisher:
Austrian Standards International
Format:
Digital | 31 Pages
Language:
German | English | Download GER/ENG
Optionally co-design standards:
This International Standard provides guidance on mechanisms for ensuring that methods and processes used in the investigation of information security incidents are “fit for purpose”. It encapsulates best practice on defining requirements, describing methods, and providing evidence that implementations of methods can be shown to satisfy requirements. It includes consideration of how vendor and third-party testing can be used to assist this assurance process. This document aims to — provide guidance on the capture and analysis of functional and non-functional requirements relating to an Information Security (IS) incident investigation, — give guidance on the use of validation as a means of assuring suitability of processes involved in the investigation, — provide guidance on assessing the levels of validation required and the evidence required from a validation exercise, — give guidance on how external testing and documentation can be incorporated in the validation process.
ÖVE/ÖNORM EN ISO/IEC 27041
2016 12 01
Information technology - Security techniques - Guidance on assuring suitability and adequacy of inci...
Norm
Norm
ISO/IEC 27000:2018
Issue date : 2018 02 07
Information technology — Security techniques — Information security management systems — Overview and vocabulary
Norm
ISO/IEC 27041:2015
Issue date : 2015 06 19
Information technology — Security techniques — Guidance on assuring suitability and adequacy of incident investigative method