March 16, 2006 (Press Release) --
The new BSI information security standard, numbered BS7799-3, has been released. This is titled 'Guidelines for Information Security Risk Management', and is designed to support the general security management standard, ISO 27001, which was published in 2005.
Whilst ISO27001 (ref ISO 17799) covers all aspects of an information security management system, BS 7799-3 focuses specifically upon risk, including the following aspects:
- the evaluation of risks
- controls to address these
- monitoring the risks
- maintenance of the risk control system.
The BS 7799-3 document is organized as follows:
1. Scope
2. Normative refs
3. Definitions
4. Information security risks in the organizations context
5. Risk assessment
6. Risk treatment and management decision making
7. Ongoing risk management
The standard is available for the main BSI outlet, StandardsDirect:
http://17799.standardsdirect.org/bs7799.htm
Or as part of a special edition of the ISO 17799 Toolkit:
http://www.27005.net
For further information on BS7799 and BS 7799-3, itself the following general reference sites may assist:
http://www.thewindow.to/bs7799/
http://www.17799central.com
The ISO17799 Newsletter
http://17799-news.the-hamster.com
Whilst ISO27001 (ref ISO 17799) covers all aspects of an information security management system, BS 7799-3 focuses specifically upon risk, including the following aspects:
- the evaluation of risks
- controls to address these
- monitoring the risks
- maintenance of the risk control system.
The BS 7799-3 document is organized as follows:
1. Scope
2. Normative refs
3. Definitions
4. Information security risks in the organizations context
5. Risk assessment
6. Risk treatment and management decision making
7. Ongoing risk management
The standard is available for the main BSI outlet, StandardsDirect:
http://17799.standardsdirect.org/bs7799.htm
Or as part of a special edition of the ISO 17799 Toolkit:
http://www.27005.net
For further information on BS7799 and BS 7799-3, itself the following general reference sites may assist:
http://www.thewindow.to/bs7799/
http://www.17799central.com
The ISO17799 Newsletter
http://17799-news.the-hamster.com

The new BSI information security standard, numbered BS 7799-3, has today been released.
Email
Print
Download
SPAM
LEAVE A COMMENT





