7. 7
標準名稱角度
ISO 27002: 2013
Information technology — Security techniques —
Code of practice for information security controls
ISO27002:2021 DIS
Information security, cybersecurity and
privacy protection — Information security
controls
參考網址:https://www.iso.org/obp/ui/#iso:std:iso-iec:27002:dis:ed-
3:v1:en
30. 30
governance,
Asset management,
Information protection,
Human resource security,
Physical security,
System and network security,
Application security,
Secure configuration,
Identity and access management,
Threat and vulnerability management,
continuity,
supplier relationships securit,
legal and compliance,
information security event management,
and information security assurance.
Operational
capabilities
Operational capabilities