ISO/IEC 27005:2008
Information technology - Security techniques - Information security risk management

Standard No.
ISO/IEC 27005:2008
Release Date
2008
Published By
International Organization for Standardization (ISO)
Status
Replace By
ISO/IEC 27005:2011
Latest
ISO/IEC 27005:2022
Scope
This International Standard provides guidelines for information security risk management. This International Standard supports the general concepts specified in ISO/lEO 27001 and is designed to assist the satisfactory implementation of information security based on a risk management approach. Knowledge of the concepts, models, processes and terminologies described in ISO/IEC27001 and ISO/IEC 27002 is important for a complete understanding of this International Standard. This International Standard is applicable to all types of organizations (e.g. commercial enterprises, government agencies, non-profit organizations) which intend to manage risks that could compromise the organization's information security.

ISO/IEC 27005:2008 history

  • 2022 ISO/IEC 27005:2022 Information security, cybersecurity and privacy protection - Guidance on managing information security risks
  • 2018 ISO/IEC 27005:2018 Information technology — Security techniques — Information security risk management
  • 2011 ISO/IEC 27005:2011 Information technology - Security techniques - Information security risk management
  • 2008 ISO/IEC 27005:2008 Information technology - Security techniques - Information security risk management
Information technology - Security techniques - Information security risk management



Copyright ©2024 All Rights Reserved