Member Login

E-mail:    Password:  


Vendor : VTT


Email  E-mail this page

Related Content  Related Content

Remember  Remember this item

 

Format: PDF

Date: 31/01/2007


Practical Implementation of an ISO 17799- Compliant Information Security Management System Using a Novel ASD Method

WORTHWHILE?

0

0 votes


Overview

This paper discusses the practical implementation of the Agile Security Development (ASD framework and presents a case study that reviews the process of building an information security management system utilizing the framework. The case study reveals the action steps for a small and medium-sized organization to utilize the method. The ASD framework and its output is fully ISO/IEC17799 compliant but takes the organization's actual management systems into account, so that ISO/IEC 17799 certification is not necessarily the ultimate target if the organization so chooses. The ASD framework supports auditing against the organization's own baseline, which might not be compliant with existing standards and industry-defined best practices.



See also: Security Management