ISO/IEC 27002
Appearance
Later in 2007, ISO 17799 is due to be renamed ISO 27002 (ISO/IEC 27002:2007), bringing it into line with the other ISO 27000 series standards. There will be no change to the content.
The other standards of the ISO 27000 series, whether already published or anticipated, are:
- ISO/IEC 27000 - a standard vocabulary for the ISMS standards (in preparation)
- ISO/IEC 27001 - the certification standard against which organizations' ISMS may be certified (published in 2005)
- ISO/IEC 27002 - the proposed new name for this standard, ISO 17799 (due to be renumbered in 2007)
- ISO/IEC 27003 - a new ISMS implementation guide (in preparation)
- ISO/IEC 27004 - a standard for information security measurement and metrics (in preparation)
- ISO/IEC 27005 - a standard for risk management, potentially related to the current British Standard BS 7799 part 3
- ISO/IEC 27006 - a guide to the certification/registration process (published in 2007)
- ISO/IEC 27007 - a guideline for auditing information security management systems (in preparation)
- ISO/IEC 27799 - guidance on ISO 17799 in the healthcare industry (in preparation)
References
- ISO/IEC 17799:2005
- ISO/IEC 27001
- ISO CD 27799: Health informatics - Security management in health using ISO 17799