Information technology — Security techniques — Code of practice for information security controls

Logo
CSA Group
Standards Development Organisation:
Working Program:
Designation Number:
ISO/IEC 27002
Standard Type:
National Standard of Canada - Domestic
Standard Development Activity:
New Edition
Status:
Proceeding to development
SDO Comment Period Start Date:
SDO Comment Period End Date:
Posted On:

Scope:

Scope

1 Scope

This International Standard gives guidelines for organizational information security standards and information security management practices including the selection, implementation and management

of controls taking into consideration the organization’s information security risk environment(s). This International Standard is designed to be used by organizations that intend to:

a) select controls within the process of implementing an Information Security Management System based on ISO/IEC 27001;

b) implement commonly accepted information security controls;

c) develop their own information security management guidelines.

Note: The information provided above was obtained by the Standards Council of Canada (SCC) and is provided as part of a centralized, transparent notification system for new standards development. The system allows SCC-accredited Standards Development Organizations (SDOs), and members of the public, to be informed of new work in Canadian standards development, and allows SCC-accredited SDOs to identify and resolve potential duplication of standards and effort.

Individual SDOs are responsible for the content and accuracy of the information presented here. The text is presented in the language in which it was provided to SCC.