IT Governance – An international guide to data security and ISO 27001/ISO 27002, Eighth edition
eBook - ePub

IT Governance – An international guide to data security and ISO 27001/ISO 27002, Eighth edition

  1. 486 pages
  2. English
  3. ePUB (mobile friendly)
  4. Available on iOS & Android
eBook - ePub

IT Governance – An international guide to data security and ISO 27001/ISO 27002, Eighth edition

About this book

Recommended textbook for the Open University's postgraduate information security course and the recommended text for all IBITGQ ISO 27001 courses

In this updated edition, renowned ISO 27001/27002 experts Alan Calder and Steve Watkins:

  • Discuss the ISO 27001/27002: 2022 updates;
  • Provide guidance on how to establish a strong IT governance system and an ISMS (information security management system) that complies with ISO 27001 and ISO 27002;
  • Highlight why data protection and information security are vital in our ever-changing online and physical environments;
  • Reflect on changes to international legislation, e.g. the GDPR (General Data Protection Regulation); and
  • Review key topics such as risk assessment, asset management, controls, security, supplier relationships and compliance.

Fully updated to align with ISO 27001/27002: 2022

IT Governance – An international guide to data security and ISO 27001/ISO 27002, Eighth edition provides:

  • Expert information security management and governance guidance based on international best practice;
  • Guidance on how to protect and enhance your organisation with an ISO 27001: 2022-compliant ISMS; and
  • Discussion around the changes to international legislation, including ISO 27001: 2022 and ISO 27002: 2022.

As cyber threats continue to increase in prevalence and ferocity, it is more important than ever to implement a secure ISMS to protect your organisation. Certifying your ISMS to ISO 27001 and ISO 27002 demonstrates to customers and stakeholders that your organisation is handling data securely.

Frequently asked questions

Yes, you can cancel anytime from the Subscription tab in your account settings on the Perlego website. Your subscription will stay active until the end of your current billing period. Learn how to cancel your subscription.
No, books cannot be downloaded as external files, such as PDFs, for use outside of Perlego. However, you can download books within the Perlego app for offline reading on mobile or tablet. Learn more here.
Perlego offers two plans: Essential and Complete
  • Essential is ideal for learners and professionals who enjoy exploring a wide range of subjects. Access the Essential Library with 800,000+ trusted titles and best-sellers across business, personal growth, and the humanities. Includes unlimited reading time and Standard Read Aloud voice.
  • Complete: Perfect for advanced learners and researchers needing full, unrestricted access. Unlock 1.4M+ books across hundreds of subjects, including academic and specialized titles. The Complete Plan also includes advanced features like Premium Read Aloud and Research Assistant.
Both plans are available with monthly, semester, or annual billing cycles.
We are an online textbook subscription service, where you can get access to an entire online library for less than the price of a single book per month. With over 1 million books across 1000+ topics, we’ve got you covered! Learn more here.
Look out for the read-aloud symbol on your next book to see if you can listen to it. The read-aloud tool reads text aloud for you, highlighting the text as it is being read. You can pause it, speed it up and slow it down. Learn more here.
Yes! You can use the Perlego app on both iOS or Android devices to read anytime, anywhere — even offline. Perfect for commutes or when you’re on the go.
Please note we cannot support devices running on iOS 13 and Android 7 or earlier. Learn more about using the app.
Yes, you can access IT Governance – An international guide to data security and ISO 27001/ISO 27002, Eighth edition by Alan Calder,Steve Watkins in PDF and/or ePUB format, as well as other popular books in Business & Cyber Security. We have over one million books available in our catalogue for you to explore.

Information

Table of contents

  1. Cover
  2. Title
  3. Copyright
  4. Contents
  5. About the Authors
  6. Introduction
  7. Chapter 1: Why is information security necessary?
  8. Chapter 2: The corporate governance code, the FRC guidance on risk management, and Sarbanes–Oxley
  9. Chapter 3: ISO 27001
  10. Chapter 4: Organizing information security
  11. Chapter 5: Information security policy and scope
  12. Chapter 6: The risk assessment and Statement of Applicability
  13. Chapter 7: Mobile and remote working
  14. Chapter 8: Human resources security
  15. Chapter 9: Asset management
  16. Chapter 10: Exchanges of information
  17. Chapter 11: Access control
  18. Chapter 12: User access management
  19. Chapter 13: Supplier relationships
  20. Chapter 14: Physical and environmental security
  21. Chapter 15: Equipment security
  22. Chapter 16: System and application access control
  23. Chapter 17: Cryptography
  24. Chapter 18: Operations security
  25. Chapter 19: Controls against malicious software (malware)
  26. Chapter 20: Networks security
  27. Chapter 21: System acquisition, development, and maintenance
  28. Chapter 22: Development and support processes
  29. Chapter 23: Monitoring and information security incident management
  30. Chapter 24: Business and information security continuity management
  31. Chapter 25: Compliance
  32. Chapter 26: The ISO 27001 audit
  33. Appendix 1: Useful websites
  34. Appendix 2: Further reading
  35. Index