Difference between revisions 651661873 and 657374647 on enwiki

[[File:Risk Management Elements.jpg|thumb|Plan-Do-Check-Act Cycle]]
[[File:Isms framework.jpg|thumb|ENISA: Risk Management and Isms activities]]
An '''information security management system'''<ref>{{cite web|title=Security management system’s usability key to easy adoption|url=http://www.sourcesecurity.com/news/articles/co-4108-ga.8554.html|publisher=sourcesecurity.com|accessdate=22 August 2013}}</ref>  (ISMS) is a set of policies concerned with [[information securi(contracted; show full)

Other frameworks such as [[COBIT]] and [[ITIL]] touch on security issues, but are mainly geared toward creating a governance framework for information and IT more generally. COBIT has a companion framework ''[[Risk IT]]'' dedicated to Information security.


BThe below table illustrate theprovides a certification structure comparison of some best-known ISMSs:<ref name="isms" /><br />
{| class="wikitable"
|-
! !! '''BS 7799''' !! '''Common Criteria''' !! '''IT Security Evaluation Criteria'''
|-
| '''Operation Area''' || England || About 25 Countries|| European Countries
|-
(contracted; show full)* [[Threat (computer)]]
* [[Vulnerability (computing)]]
* [[WARP (information security)]]

== Notes and references ==
<references/>

[[Category:Data security]]