文档介绍:BRITISH STANDARD BS ISO/IEC
27005:2008
Information
technology — Security
techniques —
Information security
risk management
ICS
BS ISO/IEC 27005:2008
National foreword
This British Standard is the UK implementation of ISO/IEC 27005:2008. It
supersedes BS ISO/IEC TR 13335-3:1998 and BS ISO/IEC TR 13335-4:2000,
which are withdrawn.
The UK participation in its preparation was entrusted to mittee
IST/33, IT — Security techniques.
A list anizations represented on mittee can be obtained on
request to its secretary.
This publication does not purport to include all the necessary provisions of a
contract. Users are responsible for its correct application.
Compliance with a British Standard cannot confer immunity from
legal obligations.
This British Standard was Amendments/corrigenda issued since publication
published under the authority
of the Standards Policy and
mittee ments
on 30 June 2008
© BSI 2008
ISBN 978 0 580 54513 9
BS ISO/IEC 27005:2008
INTERNATIONAL ISO/IEC
STANDARD 27005
First edition
2008-06-15
Information technology — Security
techniques — Information security risk
management
Technologies de l'information — Techniques de sécurité — Gestion du
risque en sécurité de l'information
Reference number
ISO/IEC 27005:2008(E)
ii
BS ISO/IEC 27005:2008
Contents Page
Foreword............................................................................................................................................................. v
Introduction ....................................................................................................................................................... vi
1 Scope ..................................................................................................................................................... 1
2 Normative references ......................