首页 馆藏资源 舆情信息 标准服务 科研活动 关于我们
现行 ISO/IEC TS 24462:2024
到馆提醒
收藏跟踪
购买正版
Information security, cybersecurity and privacy protection — Ontology building blocks for security and risk assessment 信息安全、网络安全和隐私保护——安全和风险评估的本体构建块
发布日期: 2024-03-05
本文件定义了一份在概念上与不同类型的信息和通信技术(信通技术)可信度评估相关联的构建模块清单。这些评估适用于治理、风险管理、安全评估、安全开发生命周期(SDL)、供应链完整性和隐私等领域。本文档还定义了组织这些构建块的本体,并提供了使用构建块清单和本体的说明。 将信通技术可信度评估领域构建模块的类型、类别和结构特征形式化,旨在提高效率,改善标准制定及其使用的未来协调。构建块可以指结构组件以及语义组件。这些组件可以连接到与可信度评估相关的各种概念和活动,包括与流程相关的概念和活动,如可追溯性或评估方法的要素。

This document defines an inventory of building blocks conceptually associated with different types of assessments of information and communication technology (ICT) trustworthiness. These assessments apply to areas such as governance, risk management, security evaluation, secure development lifecycle (SDL), supply chain integrity and privacy. This document also defines an ontology that organizes these building blocks and provides instructions for using the inventory of building blocks and the ontology.

Formalizing the types, categories, and structural characteristics of building blocks in the area of ICT trustworthiness assessment aims to increase efficiency and improve future harmonization in standards development and their use. Building blocks can refer to structural components as well as semantic components. These components can be connected to a variety of concepts and activities related to trustworthiness assessments, including process related, such as traceability or elements of assessment methodologies.

分类信息
发布单位或类别: 国际组织-国际标准化组织
关联关系
研制信息
归口单位: ISO/IEC JTC 1/SC 27
相似标准/计划/法规
现行
ISO/IEC 27014-2020
Information security, cybersecurity and privacy protection — Governance of information security
信息安全、网络安全与隐私保护——信息安全治理
2020-12-15
现行
BS ISO/IEC 27014-2020
Information security, cybersecurity and privacy protection. Governance of information security
信息安全、网络安全和隐私保护 信息安全治理
2020-12-17
现行
ISO/IEC 27002-2022
Information security, cybersecurity and privacy protection — Information security controls
信息安全、网络安全和隐私保护-信息安全控制
2022-02-15
现行
ISO/IEC 24745-2022
Information security, cybersecurity and privacy protection - Biometric information protection
信息安全、网络安全和隐私保护-生物特征信息保护
2022-02-08
现行
BS ISO/IEC 24745-2022
Information security, cybersecurity and privacy protection. Biometric information protection
信息安全、网络安全和隐私保护 生物特征信息保护
2022-03-09
现行
ISO/IEC 24745-2022
Information security, cybersecurity and privacy protection — Biometric information protection
信息安全、网络安全和隐私保护-生物特征信息保护
2022-02-08
现行
GOST ISO/IEC 27014-2021
Информационные технологии. Информационная безопасность, кибербезопасность и защита конфиденциальности. Руководство деятельностью по обеспечению информационной безопасности
信息技术 信息安全、网络安全和隐私保护 信息安全治理
现行
ISO/IEC 27001-2022
Information security, cybersecurity and privacy protection — Information security management systems — Requirements
信息安全、网络安全和隐私保护.信息安全管理系统.要求
2022-10-25
现行
ISO/IEC 27005-2022
Information security, cybersecurity and privacy protection — Guidance on managing information security risks
信息安全、网络安全和隐私保护.信息安全风险管理指南
2022-10-25
现行
BS EN ISO 27007-2022
Information security, cybersecurity and privacy protection. Guidelines for information security management systems auditing
信息安全、网络安全和隐私保护 信息安全管理系统审核指南
2022-06-10
现行
ISO/IEC 27007-2020
Information security, cybersecurity and privacy protection — Guidelines for information security management systems auditing
信息安全、网络安全和隐私保护.信息安全管理系统审计指南
2020-01-21
现行
ISO/IEC 27019-2024
Information security, cybersecurity and privacy protection - Information security controls for the energy utility industry
信息安全、网络安全和隐私保护-能源公用事业行业的信息安全控制
2024-10-18
现行
ISO/IEC 27019-2024
Information security, cybersecurity and privacy protection — Information security controls for the energy utility industry
信息安全、网络安全和隐私保护-能源公用事业行业的信息安全控制
2024-10-18
现行
BS ISO/IEC 20897-1-2020
Information security, cybersecurity and privacy protection. Physically unclonable functions-Security requirements
信息安全、网络安全和隐私保护 物理上不可压缩的函数
2020-12-17
现行
ISO/IEC 27559-2022
Information security, cybersecurity and privacy protection – Privacy enhancing data de-identification framework
信息安全、网络安全和隐私保护——增强隐私的数据去标识框架
2022-11-16
现行
ISO/IEC 27561-2024
Information security, cybersecurity and privacy protection — Privacy operationalisation model and method for engineering (POMME)
信息安全、网络安全和隐私保护——工程隐私操作模型和方法(POMME)
2024-03-26
现行
ISO/IEC 27556-2022
Information security, cybersecurity and privacy protection — User-centric privacy preferences management framework
信息安全、网络安全和隐私保护.以用户为中心的隐私偏好管理框架
2022-10-10
现行
ISO/IEC 27559-2022
Information security, cybersecurity and privacy protection – Privacy enhancing data de-identification framework
信息安全、网络安全和隐私保护——增强隐私的数据去标识框架
2022-11-16
现行
ISO/IEC 18045-2022
Information security, cybersecurity and privacy protection — Evaluation criteria for IT security — Methodology for IT security evaluation
信息安全、网络安全和隐私保护.IT安全的评估标准.IT安全评估方法
2022-08-09
现行
ISO/IEC 27555-2021
Information security, cybersecurity and privacy protection - Guidelines on personally identifiable information deletion
信息安全、网络安全和隐私保护.个人识别信息删除指南
2021-10-08