首页> 外文会议>Engineering secure software and systems. >Supporting the Development and Documentation of ISO 27001 Information Security Management Systems through Security Requirements Engineering Approaches
【24h】

Supporting the Development and Documentation of ISO 27001 Information Security Management Systems through Security Requirements Engineering Approaches

机译:通过安全需求工程方法支持ISO 27001信息安全管理系统的开发和文档编制

获取原文
获取原文并翻译 | 示例

摘要

Assembling an information security management system according to the ISO 27001 standard is difficult, because the standard provides only sparse support for system development and documentation.We analyse the ISO 27001 standard to determine what techniques and documentation are necessary and instrumental to develop and document systems according to this standard. Based on these insights, we inspect a number of current security requirements engineering approaches to evaluate whether and to what extent these approaches support ISO 27001 system development and documentation. We re-use a conceptual framework originally developed for comparing security requirements engineering methods to relate important terms, techniques, and documentation artifacts of the security requirements engineering methods to the ISO 27001.
机译:根据ISO 27001标准组装信息安全管理系统很困难,因为该标准仅提供了对系统开发和文档的稀疏支持。我们分析ISO 27001标准以确定哪些技术和文档对于根据系统进行开发和文档化是必需的达到这个标准。基于这些见解,我们检查了许多当前的安全需求工程方法,以评估这些方法是否以及在何种程度上支持ISO 27001系统开发和文档编制。我们重用了最初为比较安全需求工程方法而开发的概念框架,以将安全需求工程方法的重要术语,技术和文档构件与ISO 27001相关联。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号