000 01309nam a2200205 a 4500
003 OSt
005 20160921084435.0
008 150117s2010 uk ||||g |||| 001 0dspa d
020 _a9781849280433
041 0 _aeng
082 0 4 _221
_a005.8
_bC146 2010
100 1 _99224
_aCalder, Alan
245 1 0 _aInformation security risk management for ISO27001 / ISO27002 /
_cAlan Calder, Steve G. Watkins.
260 _aReino unido :
_bIT governance publishing,
_c2010.
300 _aix, 186 p. ;
_c22 cm.
500 _aIncluye apéndices: I. Carrying out an ISO27001 risk assessment using Vsrisk --II. ISO27001 implementation resources book by same authors.
505 0 _a1. Risk management -- 2. Risk assessment methodologies -- 3. Risk management objectives -- 4. Roles and reponsibilites -- 5. Risk Assessment software -- 6. Information security policy and scoping -- 7. The ISO27001 risk assessment -- 8. Information assets -- 9. Threats and vulnerabilities -- 10. Impact and asset valuation -- 11. Likelihood -- 12. Risk Level -- 13. Risk Treatment and the selection of controls -- 14. The statement of applicability -- 15. The gap analysisi and risk treatment -- 16. Repeating and reviewing the risk
700 1 _99225
_aWatkins Steve G.
942 _2ddc
_cBK
_h005.8
_iC146 2010
999 _c58389
_d58389