
eBook - ePub
IT Governance – An international guide to data security and ISO 27001/ISO 27002, Eighth edition
- 486 pages
- English
- ePUB (mobile friendly)
- Available on iOS & Android
eBook - ePub
IT Governance – An international guide to data security and ISO 27001/ISO 27002, Eighth edition
About this book
Recommended textbook for the Open University's postgraduate information security course and the recommended text for all IBITGQ ISO 27001 courses
In this updated edition, renowned ISO 27001/27002 experts Alan Calder and Steve Watkins:
- Discuss the ISO 27001/27002: 2022 updates;
- Provide guidance on how to establish a strong IT governance system and an ISMS (information security management system) that complies with ISO 27001 and ISO 27002;
- Highlight why data protection and information security are vital in our ever-changing online and physical environments;
- Reflect on changes to international legislation, e.g. the GDPR (General Data Protection Regulation); and
- Review key topics such as risk assessment, asset management, controls, security, supplier relationships and compliance.
Fully updated to align with ISO 27001/27002: 2022
IT Governance – An international guide to data security and ISO 27001/ISO 27002, Eighth edition provides:
- Expert information security management and governance guidance based on international best practice;
- Guidance on how to protect and enhance your organisation with an ISO 27001: 2022-compliant ISMS; and
- Discussion around the changes to international legislation, including ISO 27001: 2022 and ISO 27002: 2022.
As cyber threats continue to increase in prevalence and ferocity, it is more important than ever to implement a secure ISMS to protect your organisation. Certifying your ISMS to ISO 27001 and ISO 27002 demonstrates to customers and stakeholders that your organisation is handling data securely.
Frequently asked questions
Yes, you can cancel anytime from the Subscription tab in your account settings on the Perlego website. Your subscription will stay active until the end of your current billing period. Learn how to cancel your subscription.
No, books cannot be downloaded as external files, such as PDFs, for use outside of Perlego. However, you can download books within the Perlego app for offline reading on mobile or tablet. Learn more here.
Perlego offers two plans: Essential and Complete
- Essential is ideal for learners and professionals who enjoy exploring a wide range of subjects. Access the Essential Library with 800,000+ trusted titles and best-sellers across business, personal growth, and the humanities. Includes unlimited reading time and Standard Read Aloud voice.
- Complete: Perfect for advanced learners and researchers needing full, unrestricted access. Unlock 1.4M+ books across hundreds of subjects, including academic and specialized titles. The Complete Plan also includes advanced features like Premium Read Aloud and Research Assistant.
We are an online textbook subscription service, where you can get access to an entire online library for less than the price of a single book per month. With over 1 million books across 1000+ topics, we’ve got you covered! Learn more here.
Look out for the read-aloud symbol on your next book to see if you can listen to it. The read-aloud tool reads text aloud for you, highlighting the text as it is being read. You can pause it, speed it up and slow it down. Learn more here.
Yes! You can use the Perlego app on both iOS or Android devices to read anytime, anywhere — even offline. Perfect for commutes or when you’re on the go.
Please note we cannot support devices running on iOS 13 and Android 7 or earlier. Learn more about using the app.
Please note we cannot support devices running on iOS 13 and Android 7 or earlier. Learn more about using the app.
Yes, you can access IT Governance – An international guide to data security and ISO 27001/ISO 27002, Eighth edition by Alan Calder,Steve Watkins in PDF and/or ePUB format, as well as other popular books in Business & Cyber Security. We have over one million books available in our catalogue for you to explore.
Information
Table of contents
- Cover
- Title
- Copyright
- Contents
- About the Authors
- Introduction
- Chapter 1: Why is information security necessary?
- Chapter 2: The corporate governance code, the FRC guidance on risk management, and Sarbanes–Oxley
- Chapter 3: ISO 27001
- Chapter 4: Organizing information security
- Chapter 5: Information security policy and scope
- Chapter 6: The risk assessment and Statement of Applicability
- Chapter 7: Mobile and remote working
- Chapter 8: Human resources security
- Chapter 9: Asset management
- Chapter 10: Exchanges of information
- Chapter 11: Access control
- Chapter 12: User access management
- Chapter 13: Supplier relationships
- Chapter 14: Physical and environmental security
- Chapter 15: Equipment security
- Chapter 16: System and application access control
- Chapter 17: Cryptography
- Chapter 18: Operations security
- Chapter 19: Controls against malicious software (malware)
- Chapter 20: Networks security
- Chapter 21: System acquisition, development, and maintenance
- Chapter 22: Development and support processes
- Chapter 23: Monitoring and information security incident management
- Chapter 24: Business and information security continuity management
- Chapter 25: Compliance
- Chapter 26: The ISO 27001 audit
- Appendix 1: Useful websites
- Appendix 2: Further reading
- Index