What is the purpose of ISO 31000?
Provides principles and guidelines for managing risk across any organization.
What are the core principles of ISO 31000?
Create value; Be integrated and structured; Tailored to the organization; Continuous improvement.
What is the purpose of ISO 27001?
Specifies requirements for an Information Security Management System (ISMS) to protect confidentiality, integrity, and availability. Cyber-Related
What is the main approach used in ISO 27001?
Risk-based approach using the PDCA cycle and Annex A controls.
What is the purpose of ISO 22301?
Ensures organizations can continue operations during disruptive incidents through Business Continuity Management.
What are key components of ISO 22301?
Business Impact Analysis (BIA); Risk Assessment; Continuity Strategies; Testing & Exercises.
What is the purpose of ISO 27005?
Provides guidelines for managing information security risks, complementing ISO 27001. Cyber-Related
What are the steps in ISO 27005 risk management?
Risk Identification; Risk Analysis; Risk Evaluation; Risk Treatment; Monitoring & Review.