000 03725nam a22002417a 4500
003 NULRC
005 20250614092013.0
008 250614b ph ||||| |||| 00| 0 eng d
020 _a9781803243160
040 _cNULRC
100 _aNair, Adarsh
_eauthor
245 _aMastering information security compliance management :
_bA Comprehensive handbook on ISO/IEC 27001:2022 compliance /
_cAdarsh Nair and Greeshma M. R.
260 _aBirmingham :
_bPackt Publishing,
_c2023.
300 _a219 pages ;
365 _bUSD40.00
504 _aIncludes index.
505 _aCover -- Title Page -- Copyright and Credits -- Contributors -- Table of Contents -- Part 1: Setting the Stage – Definitions, Concepts, Principles, Standards, and Certifications -- Chapter 1: Foundations, Standards, and Principles of Information Security -- Chapter 2: Introduction to ISO 27001 -- Part 2: The Protection Strategy – ISO/IEC 27001/02 Design and Implementation -- Chapter 3: ISMS Controls -- Chapter 4: Risk Management -- Chapter 5: ISMS – Phases of Implementation -- Chapter 6: Information Security Incident Management -- Chapter 7: Case Studies – Certification, SoA, and Incident Management -- Part 3: How to Sustain – Monitoring and Measurement -- Chapter 8: Audit Principles, Concepts, and Planning -- Chapter 9: Performing an Audit -- Chapter 10: Audit Reporting, Follow-Up, and Strategies for Continual Improvement -- Chapter 11: Auditor Competence and Evaluation -- Chapter 12: Case Studies – Audit Planning, Reporting Nonconformities, and Audit Reporting -- Appendix – Terms and Definitions -- Index -- Other Books You May Enjoy.
520 _aStrengthen your ability to implement, assess, evaluate, and enhance the effectiveness of information security controls based on ISO/IEC 27001/27002:2022 standards Purchase of the print or Kindle book includes a free PDF eBook Key Features Familiarize yourself with the clauses and control references of ISO/IEC 27001:2022Define and implement an information security management system aligned with ISO/IEC 27001/27002:2022Conduct management system audits to evaluate their effectiveness and adherence to ISO/IEC 27001/27002:2022Book Description ISO 27001 and ISO 27002 are globally recognized standards for information security management systems (ISMSs), providing a robust framework for information protection that can be adapted to all organization types and sizes. Organizations with significant exposure to information-security–related risks are increasingly choosing to implement an ISMS that complies with ISO 27001. This book will help you understand the process of getting your organization's information security management system certified by an accredited certification body. The book begins by introducing you to the standards, and then takes you through different principles and terminologies. Once you completely understand these standards, you'll explore their execution, wherein you find out how to implement these standards in different sizes of organizations. The chapters also include case studies to enable you to understand how you can implement the standards in your organization. Finally, you'll get to grips with the auditing process, planning, techniques, and reporting and learn to audit for ISO 27001. By the end of this book, you'll have gained a clear understanding of ISO 27001/27002 and be ready to successfully implement and audit for these standards.
650 _aINFORMATION STORAGE AND RETRIEVAL SYSTEMS -- SECURITY MEASURES
700 _aM. R., Greeshma
_eco-author
856 _uhttps://research.ebsco.com/c/nahjoz/search/details/m2p6cwnjn5?db=nlebk&db=nlabk
942 _2lcc
_cEL
_n0
999 _c22640
_d22640