We're creating a single website for everything to do with BIS but, while we do that, you'll find information in three places. > Find what you're looking for
The Information Security Standard ISO/IEC 27002 is divided into eleven main sections. Section 10 is Business Continuity Management.
Each organisation's business relies on its own staff, systems and, to some extent, other organisations.
Anything from a burst water main to a terrorist attack on a foreign country can have a major effect on an organisation.
As such, there must be a process for:
Business continuity management considers the risks within an organisation and ensures that core processes keep running during adverse events.
Tests do not have to be carried out 'for real', but could be 'paper exercises'.
A review procedure to ensure that the plans are workable, and are sufficiently general to cover the most likely occurrences, is also necessary.
To read more about this subject, see our separate Business Continuity Management section.
Use links below for further information:
ISO/IEC 27002 Section 1
ISO/IEC 27002 Section 2
ISO/IEC 27002 Section 3
ISO/IEC 27002 Section 4
ISO/IEC 27002 Section 5
ISO/IEC 27002 Section 6
ISO/IEC 27002 Section 7
ISO/IEC 27002 Section 8
ISO/IEC 27002 Section 9
ISO/IEC 27002 Section 11
ISO/IEC 27002 Explained
If you would like more background information about information security standards follow this link.