ISO/IEC 27001 standard specifies requirements for setting, implementation, using, monitoring, analysis and improvement of information security systems within organization. The aim of the standard is to systematically ensure that the information security of the organization is not compromised and thus prevent serious financial loss or possible difficulties caused by loss of the organization's confidence.
Implementation and certification of Information Security Management system forms precondition for improvement in the following areas :
Management |
|
Data security |
|
Economic benefits |
|
Business and marketing benefits |
|