NISTs and ISO/IECs Flashcards
1
Q
ISO/IEC 27001
A
ISMS requirements (Healthcare)
2
Q
ISO/IEC 27002
A
Code of practice for information security management
3
Q
ISO/IEC 27003
A
Guideline for ISMS implementation
4
Q
ISO/IEC 27004
A
Guideline for security management measurement and metrics framework
5
Q
ISO/IEC 27005
A
Guideline for information security risk management
6
Q
ISO/IEC 27006
A
Guidance for bodies providing audit and certification of information security management systems
7
Q
NIST SP 800-53 deals with what?
A
Federal information systems
8
Q
NIST SP 800-30 is a guide for what?
A
Conducting risk assessments
9
Q
ISO/IEC 27034 addresses what?
A
Application security management processes and security validation
10
Q
ISO 28000 provides guidance on what?
A
Supply chain management