文档介绍:INTERNATIONALISO/IECSTANDARD17799Firstedition2000-12-01Informationtechnology—CodeofpracticeforinformationsecuritymanagementTechnologiesdel'information—Codedepratiquepourlagestiondesécuritéd'informationReferencenumberISO/IEC17799:2000(E)©ISO/IEC2000ISO/IEC17799:2000(E)'slicensingpolicy,,eptthereintheresponsibilityofnotinfringingAdobe';thePDF-,pleaseinformtheCentralSecretariatattheaddressgivenbelow.©ISO/,nopartofthispublicationmaybereproducedorutilizedinanyformorbyanymeans,electronicormechanical,includingphotocopyingandmicrofilm,withoutpermissioninwritingfromeitherISOattheaddressbeloworISO'·CH-1211Geneva20Tel.+41227490111Fax+41227490947E-******@©ISO/IEC2000–AllrightsreservedISO/IEC17799:2000(E)ContentsFOREWORD........................................................................................................................................................VIIINTRODUCTION.............................................................................................................................................VIIIWHATISINFORMATIONSECURITY?................................................................................................................VIIIWHYINFORMATIONSECURITYISNEEDED.....................................................................................................VIIIHOWTOESTABLISHSECURITYREQUIREMENTS...............................................