BS ISO 28000:2022+A1:2024
$142.49
Security and resilience. Security management systems. Requirements
Published By | Publication Date | Number of Pages |
BSI | 2024 | 32 |
PDF Catalog
PDF Pages | PDF Title |
---|---|
2 | undefined |
7 | Foreword |
8 | Introduction |
11 | 1 Scope 2 Normative references 3 Terms and definitions |
14 | 4 Context of the organization 4.1 Understanding the organization and its context 4.2 Understanding the needs and expectations of interested parties 4.2.1 General 4.2.2 Legal, regulatory and other requirements |
15 | 4.2.3 Principles |
16 | 4.3 Determining the scope of the security management system 4.4 Security management system |
17 | 5 Leadership 5.1 Leadership and commitment 5.2 Security policy 5.2.1 Establishing the security policy |
18 | 5.2.2 Security policy requirements 5.3 Roles, responsibilities and authorities 6 Planning 6.1 Actions to address risks and opportunities 6.1.1 General |
19 | 6.1.2 Determining security-related risks and identifying opportunities 6.1.3 Addressing security-related risks and exploiting opportunities 6.2 Security objectives and planning to achieve them 6.2.1 Establishing security objectives |
20 | 6.2.2 Determining security objectives 6.3 Planning of changes 7 Support 7.1 Resources 7.2 Competence |
21 | 7.3 Awareness 7.4 Communication 7.5 Documented information 7.5.1 General 7.5.2 Creating and updating documented information |
22 | 7.5.3 Control of documented information 8 Operation 8.1 Operational planning and control 8.2 Identification of processes and activities |
23 | 8.3 Risk assessment and treatment 8.4 Controls |
24 | 8.5 Security strategies, procedures, processes and treatments 8.5.1 Identification and selection of strategies and treatments 8.5.2 Resource requirements 8.5.3 Implementation of treatments 8.6 Security plans 8.6.1 General 8.6.2 Response structure |
25 | 8.6.3 Warning and communication 8.6.4 Content of the security plans |
26 | 8.6.5 Recovery 9 Performance evaluation 9.1 Monitoring, measurement, analysis and evaluation |
27 | 9.2 Internal audit 9.2.1 General 9.2.2 Internal audit programme 9.3 Management review 9.3.1 General |
28 | 9.3.2 Management review inputs 9.3.3 Management review results 10 Improvement 10.1 Continual improvement |
29 | 10.2 Nonconformity and corrective action |
30 | Bibliography |